Description
The password for the administrative interface of the Lucee web application is not configured. An unauthenticated attacker can log into the administrative interface and compromise the system.
Remediation
Set the password for the administrative interfaces
References
Related Vulnerabilities
vBSEO 3.6.0 PHP code injection
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-5743)
WooFramework shortcode exploit
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2158)
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-10002)