CVE-2017-15684: Path Traversal
Published Nov 27, 2020
·Updated
Crafter CMS Crafter Studio 3.0.1 has a directory traversal vulnerability which allows unauthenticated attackers to view files from the operating system.
Affected Software
1 affected component
CrafterCMS Crafter Cms>=3.0.0<3.0.1
Event History
Nov 27, 2020
CVE Published
via MITRE·05:28 PM
Data Sourced
via MITRE·05:28 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2017-15684?
CVE-2017-15684 is a directory traversal vulnerability in Crafter CMS Crafter Studio 3.0.1 that allows unauthenticated attackers to view files from the operating system.
2
How severe is CVE-2017-15684?
CVE-2017-15684 has a severity value of 7.5, which is considered high.
3
How does CVE-2017-15684 affect Crafter CMS?
CVE-2017-15684 affects Crafter CMS Crafter Studio version 3.0.1.
4
How can I fix CVE-2017-15684?
To fix CVE-2017-15684, upgrade your Crafter CMS Crafter Studio to a version higher than 3.0.1.
5
Where can I find more information about CVE-2017-15684?
You can find more information about CVE-2017-15684 in the Crafter CMS security advisory: https://docs.craftercms.org/en/3.0/security/advisory.html