Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy scripting. This issue affects: Crafter Software Crafter CMS 3.0 versions prior to 3.0.27; 3.1 versions prior to 3.1.7.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-1235 Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy scripting. This issue affects: Crafter Software Crafter CMS 3.0 versions prior to 3.0.27; 3.1 versions prior to 3.1.7.
Github GHSA Github GHSA GHSA-wq3v-3grq-6f86 Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter Studio
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: crafter

Published:

Updated: 2024-09-17T03:07:43.126Z

Reserved: 2020-09-22T00:00:00

Link: CVE-2020-25802

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-06T14:15:12.823

Modified: 2024-11-21T05:18:48.850

Link: CVE-2020-25802

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses