CVE-2026-24728 – Interinfo DreamMaker – Missing Authentication for Critical Function
CVE ID : CVE-2026-24728
Published : Jan. 30, 2026, 3:48 a.m. | 1 hour, 22 minutes ago
Description : A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 allows remote attackers to access exposed administrative functionality without prior authentication.
Severity: 9.3 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more…