7.5 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
9.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
0.948 High
EPSS
Percentile
99.3%
The ReplicationHandler (normally registered at “/replication” under a Solr
core) in Apache Solr has a “masterUrl” (also “leaderUrl” alias) parameter
that is used to designate another ReplicationHandler on another Solr core
to replicate index data into the local core. To prevent a SSRF
vulnerability, Solr ought to check these parameters against a similar
configuration it uses for the “shards” parameter. Prior to this bug getting
fixed, it did not. This problem affects essentially all Solr versions prior
to it getting fixed in 8.8.2.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 18.04 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 20.04 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 22.04 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 23.10 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 24.04 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 14.04 | noarch | lucene-solr | < any | UNKNOWN |
ubuntu | 16.04 | noarch | lucene-solr | < any | UNKNOWN |
7.5 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
9.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
0.948 High
EPSS
Percentile
99.3%