Lucene search

K
osvGoogleOSV:CVE-2021-29943
HistoryApr 13, 2021 - 7:15 a.m.

CVE-2021-29943

2021-04-1307:15:12
Google
osv.dev
10

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

50.6%

When using ConfigurableInternodeAuthHadoopPlugin for authentication, Apache Solr versions prior to 8.8.2 would forward/proxy distributed requests using server credentials instead of original client credentials. This would result in incorrect authorization resolution on the receiving hosts.

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

50.6%