CVE Vulnerabilities

CVE-2025-0502

Transmission of Private Resources into a New Sphere ('Resource Leak')

Published: Jan 15, 2025 | Modified: Jan 15, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Transmission of Private Resources into a New Sphere (Resource Leak) vulnerability in CrafterCMS Engine on Linux, MacOS, x86, Windows, 64 bit, ARM allows Directory Indexing, Resource Leak Exposure.This issue affects CrafterCMS: from 4.0.0 before 4.0.8, from 4.1.0 before 4.1.6.

Weakness

The product makes resources available to untrusted parties when those resources are only intended to be accessed by the product.

References