In Crafter CMS Crafter Studio 3.0.1 a directory traversal vulnerability exists which allows unauthenticated attackers to overwrite files from the operating system which can lead to RCE.
- https://docs.craftercms.org/en/3.0/security/advisory.html
- https://github.com/ARPSyndicate/cvemon