Description
In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.
Remediation
References
http://crafter.com
https://docs.craftercms.org/en/3.0/security/advisory.html
Related Vulnerabilities
CVE-2018-1336 Vulnerability in maven package org.apache.tomcat:tomcat-util
CVE-2019-17554 Vulnerability in maven package org.apache.olingo:odata-server-api
CVE-2019-18213 Vulnerability in maven package org.lsp4xml:org.eclipse.lsp4xml.extensions.emmet
CVE-2022-24697 Vulnerability in maven package org.apache.kylin:kylin-server-base