Vulnerabilities (CVE)

Filtered by vendor Craftercms Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23264 1 Craftercms 1 Crafter Cms 2021-12-04 6.4 MEDIUM 9.1 CRITICAL
Installations, where crafter-search is not protected, allow unauthenticated remote attackers to create, view, and delete search indexes.
CVE-2017-15681 1 Craftercms 1 Crafter Cms 2020-11-28 7.5 HIGH 9.8 CRITICAL
In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.