Security Advisory

CVE-2022-40634

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-13 18:25:09
Last updated 2024-09-16 23:36:30
Assigner crafter
State PUBLISHED

Description

Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker SSTI.