{ "id": "CVE-2023-43382", "sourceIdentifier": "cve@mitre.org", "published": "2023-09-25T16:15:14.703", "lastModified": "2023-09-25T16:16:30.717", "vulnStatus": "Undergoing Analysis", "descriptions": [ { "lang": "en", "value": "Directory Traversal vulnerability in itechyou dreamer CMS v.4.1.3 allows a remote attacker to execute arbitrary code via the themePath in the uploaded template function." } ], "metrics": {}, "references": [ { "url": "https://aecous.github.io/2023/09/17/Text/?password=Aecous", "source": "cve@mitre.org" }, { "url": "https://gist.github.com/Aecous/7c6524859d624c00f4a975ecd5a743a7", "source": "cve@mitre.org" }, { "url": "https://gitee.com/iteachyou/dreamer_cms/issues/I821AI", "source": "cve@mitre.org" } ] }