Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3x74-v64j-qc3f

Опубликовано: 13 июн. 2023
Источник: github
Github: Прошло ревью
CVSS3: 7.2

Описание

Withdrawn Advisory: CraftCMS Server-Side Template Injection vulnerability

Withdrawn

This advisory has been withdrawn because the CVE has been disputed and the underlying vulnerability is likely invalid. This link is maintained to preserve external references.

According to maintainers of Craft CMS, only administrators can access Settings, and those administrators may have business needs for their permissions. Additionally, the underlying issue likely has little to no real-world security impact.

Original Description

CraftCMS is vulnerable to Server-Side Template Injection (SSTI). An authenticated attacker can inject Twig Template to User Photo Location field when setting User Photo Location in User Settings, lead to Remote Code Execution.

Пакеты

Наименование

craftcms/cms

composer
Затронутые версииВерсия исправления

< 4.4.2

4.4.2

EPSS

Процентиль: 88%
0.04157
Низкий

7.2 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.2
nvd
больше 2 лет назад

CraftCMS version 3.7.59 is vulnerable to Server-Side Template Injection (SSTI). An authenticated attacker can inject Twig Template to User Photo Location field when setting User Photo Location in User Settings, lead to Remote Code Execution. NOTE: the vendor disputes this because only Administrators can add this Twig code, and (by design) Administrators are allowed to do that by default.

EPSS

Процентиль: 88%
0.04157
Низкий

7.2 High

CVSS3

Дефекты

CWE-94