Lucene search

K
vulnrichmentGitHub_MVULNRICHMENT:CVE-2024-41674
HistoryAug 21, 2024 - 2:31 p.m.

CVE-2024-41674 CKAN may leak Solr credentials via error message in package_search action

2024-08-2114:31:26
CWE-209
GitHub_M
github.com
6
ckan data management solr 2.10.5 2.11.0 cve-2024-41674 credentials leak

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

6.9

Confidence

Low

EPSS

0.001

Percentile

17.7%

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial

CKAN is an open-source data management system for powering data hubs and data portals. If there were connection issues with the Solr server, the internal Solr URL (potentially including credentials) could be leaked to package_search calls as part of the returned error message. This has been patched in CKAN 2.10.5 and 2.11.0.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:ckan:ckan:*:*:*:*:*:*:*:*"
    ],
    "vendor": "ckan",
    "product": "ckan",
    "versions": [
      {
        "status": "affected",
        "version": "2.0",
        "lessThan": "2.10.5",
        "versionType": "custom"
      }
    ],
    "defaultStatus": "unknown"
  }
]

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

6.9

Confidence

Low

EPSS

0.001

Percentile

17.7%

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial

Related for VULNRICHMENT:CVE-2024-41674