CVE-2023-38693 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Lucee Server (or simply Lucee) is a dynamic, Java based, tag and scripting language used for rapid web application development. The Lucee REST endpoint is vulne…
Critical CVSS: 9.8

CVE-2023-38693

Lucee Server (or simply Lucee) is a dynamic, Java based, tag and scripting language used for rapid web application development. The Lucee REST endpoint is vulnerable to RCE via an XML XXE attack. This vulnerability is fixed in Lucee 5.4.3.2, 5.3.12.1, 5.3.7.59, 5.3.8.236, and 5.3.9.173.
Vendor
-
Product
-
CWE
CWE-611
Yayın Tarihi
2025-03-05 16:15:37
Güncelleme
2025-03-05 16:15:37
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar