CVE-2017-15681: Path Traversal
In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-15681?
CVE-2017-15681 is a directory traversal vulnerability in Crafter CMS Crafter Studio 3.0.1 that allows unauthenticated attackers to overwrite files and potentially achieve remote code execution (RCE).
How severe is CVE-2017-15681?
CVE-2017-15681 has a severity score of 9.8 (Critical) based on the Common Vulnerability Scoring System (CVSS).
Which version of Crafter CMS Crafter Studio is affected by CVE-2017-15681?
CVE-2017-15681 affects Crafter CMS Crafter Studio version 3.0.1.
What is the impact of CVE-2017-15681?
The impact of CVE-2017-15681 is that unauthenticated attackers can overwrite files from the operating system, potentially leading to remote code execution (RCE).
How can I mitigate CVE-2017-15681?
To mitigate CVE-2017-15681, it is recommended to upgrade to a fixed version of Crafter CMS Crafter Studio.