TROYANOSYVIRUS
Back to CVEs

CVE-2026-24728

N/A

Description

A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication.

CVE Details

CVSS v3.1 ScoreN/A
Published1/30/2026
Last Modified2/4/2026
Sourcenvd
Honeypot Sightings0

Weaknesses (CWE)

CWE-306

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.