Description
Crafter CMS Crafter Studio 3.0.1 has a directory traversal vulnerability which allows unauthenticated attackers to view files from the operating system.
Remediation
References
http://crafter.com
https://docs.craftercms.org/en/3.0/security/advisory.html
Related Vulnerabilities
CVE-2023-38695 Vulnerability in npm package @simonsmith/cypress-image-snapshot
CVE-2023-37478 Vulnerability in npm package pnpm
CVE-2017-12632 Vulnerability in maven package org.apache.nifi:nifi
CVE-2021-23265 Vulnerability in maven package org.craftercms:crafter-core
CVE-2023-37910 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-api