Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-1308
HistoryApr 09, 2018 - 1:29 p.m.

Xxe

2018-04-0913:29:00
PRIOn knowledge base
www.prio-n.com
3

7.2 High

AI Score

Confidence

High

0.024 Low

EPSS

Percentile

89.9%

This vulnerability in Apache Solr 1.2 to 6.6.2 and 7.0.0 to 7.2.1 relates to an XML external entity expansion (XXE) in the &dataConfig=<inlinexml> parameter of Solr’s DataImportHandler. It can be used as XXE using file/ftp/http protocols in order to read arbitrary local files from the Solr server or the internal network.

7.2 High

AI Score

Confidence

High

0.024 Low

EPSS

Percentile

89.9%