Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3782
HistoryMar 27, 2017 - 5:13 a.m.

Remote Code Execution (RCE)

2017-03-2705:13:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.964

Percentile

99.6%

Glassfish is vulnerable to remote code execution (RCE). A malicious user can log into the admin account by passing null as the password. The user once logged in can deploy and execute an arbitrary war file.