CVE-2017-15680: Medium severity CrafterCMS Crafter Cms vulnerability
Published Nov 27, 2020
·Updated
In Crafter CMS Crafter Studio 3.0.1 an IDOR vulnerability exists which allows unauthenticated attackers to view and modify administrative data.
Affected Software
1 affected component
CrafterCMS Crafter Cms>=3.0<3.0.1
Event History
Nov 27, 2020
CVE Published
via MITRE·05:34 PM
Data Sourced
via MITRE·05:34 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2017-15680?
CVE-2017-15680 is an Insecure Direct Object Reference (IDOR) vulnerability in Crafter CMS Crafter Studio 3.0.1.
2
How does CVE-2017-15680 impact Crafter CMS Crafter Studio 3.0.1?
CVE-2017-15680 allows unauthenticated attackers to view and modify administrative data in Crafter CMS Crafter Studio 3.0.1.
3
How severe is CVE-2017-15680?
CVE-2017-15680 has a severity score of 6.5, making it a medium severity vulnerability.
4
How do I fix CVE-2017-15680 in Crafter CMS Crafter Studio 3.0.1?
To fix CVE-2017-15680, it is recommended to upgrade to a version higher than 3.0.1 or apply the necessary patches provided by Crafter CMS.
5
Where can I find more information about CVE-2017-15680?
For more information about CVE-2017-15680, you can refer to the official advisory page at https://docs.craftercms.org/en/3.0/security/advisory.html.