Package impact

java Maven / org.apache.solr:solr-core

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2017-9803 high 7.5 7.5 9y ago Apache Solr's Kerberos plugin can be configured to use delegation tokens, which allows an application to reuse the authentication of an end-user or another application. There are two issues with this… debianjavaapache
CVE-2017-3163 high 7.5 7.5 9y ago When using the Index Replication feature, Apache Solr nodes can pull index files from a master/leader node using an HTTP API which accepts a file name. However, Solr before 5.5.4 and 6.x before 6.4.1… debianjavaapache
CVE-2017-7660 high 7.5 7.5 9y ago Apache Solr uses a PKI based mechanism to secure inter-node communication when security is enabled. It is possible to create a specially crafted node name that does not exist as part of the cluster a… debianjavaapache
CVE-2012-6612 high 7.5 13y ago The (1) UpdateRequestHandler for XSLT or (2) XPathEntityProcessor in Apache Solr before 4.1 allows remote attackers to have an unspecified impact via XML data containing an external entity declaratio… debianjavaapache