{ "id": "CVE-2023-27066", "sourceIdentifier": "cve@mitre.org", "published": "2023-05-22T17:15:09.347", "lastModified": "2023-05-22T17:15:09.347", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Directory Traversal vulnerability in Site Core Experience Platform 10.2 and earlier allows authenticated remote attackers to download arbitrary files via Urlhandle." } ], "metrics": {}, "references": [ { "url": "https://blogs.night-wolf.io/0-day-vulnerabilities-at-sitecore-pagedesigner", "source": "cve@mitre.org" }, { "url": "https://dev.sitecore.net/Downloads/Sitecore%20Experience%20Platform/103/Sitecore%20Experience%20Platform%20103/Release%20Notes", "source": "cve@mitre.org" } ] }