Home / os / win10

Lucee Administrator imgProcess.cfm Arbitrary File Write

Posted on 17 August 2021

This Metasploit module exploits an arbitrary file write in Lucee Administrator's imgProcess.cfm file to execute commands as the Tomcat user.

 

TOP