Description
The password for the administrative interface of the Lucee web application is not configured. An unauthenticated attacker can log into the administrative interface and compromise the system.
Remediation
Set the password for the administrative interfaces
References
Related Vulnerabilities
Symfony RCE via weak/predictable APP_SECRET
Nginx stack-based buffer overflow
WordPress Plugin WP-RecentComments Information Disclosure (2.2.7)
WordPress Plugin BJ Lazy Load Remote Code Execution (0.7.5)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-19968)