Lucee - Unset Credentials
The Lucee admin panel has a first-time setup page which allows any user to set the administrator password.
luceePoC 已收录
CVSS—
共找到 6 条公开漏洞记录
The Lucee admin panel has a first-time setup page which allows any user to set the administrator password.
Lucee admin panel using the default login password was discovered.
Lucee contains a cross-site scripting vulnerability. It allows remote attackers to inject arbitrary JavaScript into the responses returned by the server.
Lucee Admin before versions 5.3.7.47, 5.3.6.68 or 5.3.5.96 contains an unauthenticated remote code execution vulnerability.