CrafterCMS是CrafterCMS公司的一个基于 Java 的 CMS。 CrafterCMS 4.0.0至4.2.2版本存在安全漏洞,该漏洞源于Groovy沙箱绕过导致认证开发者可以执行OS命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CrafterCMS | CrafterCMS | 4.0.0 ~ 4.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2025-6384: Groovy Sandbox Bypass 2 in CrafterCMS | https://github.com/mbadanoiu/CVE-2025-6384 | POC Details |
| 2 | PoC exploit for an authenticated RCE in CrafterCMS via Groovy sandbox bypass (CVE-2025-6384) | https://github.com/maestro-ant/CrafterCMS-CVE-2025-6384 | POC Details |
No public POC found.
Login to generate AI POCNo comments yet