VYPR

Crafter Studio

by Crafter Software

CVEs (2)

  • CVE-2022-40634Sep 13, 2022
    risk 0.01cvss epss 0.15

    Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker SSTI.

  • CVE-2020-25802Oct 6, 2020
    risk 0.00cvss epss 0.00

    Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy scripting. This issue affects: Crafter Software Crafter CMS 3.0 versions prior to 3.0.27; 3.1 versions prior to…