Skip to content
COOEY

EXPOSURES › CVE-2017-15681

CVE-2017-15681

CRITICAL
DETAIL
SourceNVD · cve Published2020-11-27 CVSS9.8 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2017-15681 ↗
⚡ RCE SHAME 50/100 rce

In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.

▸ RECOMMENDED ACTION  Remote code execution — patch the affected products on priority.

DESCRIPTION

In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.

SENTIMENT · TRUSTED SOURCES
synthesis severe-fallout -0.80
CVE-2017-15681 represents a critical unauthenticated directory traversal vulnerability in Crafter CMS Crafter Studio 3.0.1 allowing OS file overwrites and RCE, indicating severe security failure.
cooey ↗ severe-fallout -0.90
Critical vulnerability disclosed
"In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE."
www.cvefind.com ↗ severe-fallout +0.00
Neutral database listing
NVD ↗ severe-fallout +0.00
Neutral NVD page
NVD ↗ severe-fallout +0.00
Neutral NVD page
www.claimdepot.com ↗ severe-fallout +0.00
Neutral class action site
www.idtheftcenter.org ↗ severe-fallout +0.00
Neutral breach results site
CISA ↗ severe-fallout +0.00
Neutral CISA advisory page
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.