Code Execution Vulnerability in Lucee Servers by Lucee
CVE-2024-55354
8.8HIGH
What is CVE-2024-55354?
Lucee Server versions prior to 5.4.7.3 LTS and 6.1.1.118 exhibit a critical security flaw that allows an attacker with file placement capabilities to bypass protective measures. This vulnerability enables the execution of unauthorized code and access to sensitive server resources that should remain secured. Administrators are urged to apply updates and reinforce security mechanisms to safeguard against potential exploitation.
Affected Version(s)
Lucee Server 0 < 5.4.7.3 LTS
Lucee Server 6 < 6.1.1.118
