Dreamsecurity's vulnerability footprint centers on a narrow product line centered on MagicLine, a legacy application framework, with observed weaknesses concentrated in memory-safety and input-handling defects including classic buffer overflows and improper input validation. Current severity, exploitation, and CVE counts are shown in the live-stats panel alongside this summary.
The number and severity of CVEs published that impact products developed by Dreamsecurity over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-26606CRITICAL A vulnerability in PKI Security Solution of Dream Security could allow arbitrary command execution. This vulnerability is due to insufficient validation of the authorization certif | Aug 6, 2021 | 9.8 | 31 | NO | NO |
CVE-2023-45797CRITICAL A Buffer overflow vulnerability in DreamSecurity MagicLine4NX versions 1.0.0.1 to 1.0.0.26 allows an attacker to remotely execute code. | Oct 30, 2023 | 9.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dreamsecurity.
Media articles that mention a CVE ID that affects a product developed by Dreamsecurity — matched by CVE ID, not by vendor name.