OSV 1.4.0 · github-reviewed · 修改于 2021-04-14 02:21
发布时间
2022-02-10 07:07
GitHub 审查时间
2021-04-14 02:21
NVD 发布时间
2020-10-06 23:15
源文件
advisories/github-reviewed/2022/02/GHSA-8786-wg74-f522/GHSA-8786-wg74-f522.json
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker template exposed objects. This issue affects: Crafter Software Crafter CMS 3.0 versions prior to 3.0.27; 3.1 versions prior to 3.1.7.