An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP port 4848. No password is required to access it with the administrator account.
References
Link | Resource |
---|---|
https://www.x41-dsec.de/lab/advisories/x41-2020-003-epikur | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-02-05 06:15
Updated : 2021-02-08 11:43
NVD link : CVE-2020-10537
Mitre link : CVE-2020-10537
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
epikur
- epikur