Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://zuso.ai/advisory/za-2026-01 |
|
Fri, 30 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 30 Jan 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Interinfo
Interinfo dreammaker |
|
| Vendors & Products |
Interinfo
Interinfo dreammaker |
Fri, 30 Jan 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication. | |
| Title | Interinfo DreamMaker - Missing Authentication for Critical Function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ZUSO ART
Published:
Updated: 2026-01-30T18:19:12.243Z
Reserved: 2026-01-26T07:42:53.160Z
Link: CVE-2026-24728
Updated: 2026-01-30T18:19:08.188Z
Status : Deferred
Published: 2026-01-30T05:16:33.347
Modified: 2026-04-15T00:35:42.020
Link: CVE-2026-24728
No data.
OpenCVE Enrichment
Updated: 2026-04-18T01:15:05Z