XML Vulnerability in Crafter CMS Crafter Studio by Crafter Software
CVE-2017-15683
8.6HIGH
What is CVE-2017-15683?
In Crafter CMS Crafter Studio version 3.0.1, a vulnerability allows unauthenticated attackers to exploit specially crafted XML to create sites that can access and retrieve sensitive operating system files out-of-band. This can lead to unauthorized information disclosure, posing serious security risks to affected systems.