Описание
Missing Authorization in Crafter CMS
In Crafter CMS Crafter Studio 3.0 prior to 3.0.1 an IDOR vulnerability exists which allows unauthenticated attackers to view and modify administrative data.
Пакеты
Наименование
org.craftercms:crafter-core
maven
Затронутые версииВерсия исправления
>= 3.0.0, < 3.0.1
3.0.1
Связанные уязвимости
CVSS3: 6.5
nvd
около 5 лет назад
In Crafter CMS Crafter Studio 3.0.1 an IDOR vulnerability exists which allows unauthenticated attackers to view and modify administrative data.