Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27570
HistoryOct 14, 2020 - 4:09 a.m.

Authentication Bypass

2020-10-1404:09:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
solr-core
authentication
bypass
vulnerability
configsetoperation

EPSS

0.724

Percentile

98.1%

solr-core is vulnerable to authentication bypass. The vulnerability exists through the create ConfigSetOperation where features can be uploaded through API without authentication.

References