Описание
Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected:
- Clusters where bin/solr auth enable was not used to bootstrap BasicAuth
- Clusters where template users have been assigned strong passwords after bootstrap
A flaw was found in Apache Solr. Hardcoded credentials in the Basic Authentication setup tool allow a remote attacker to gain full administrative access to the cluster. This occurs when the bin/solr auth enable tool is used, as publicly known default credentials are silently installed alongside user-specified accounts. This vulnerability can lead to unauthorized control over the Solr cluster.
Отчет
This flaw is rated as Important because it allows a remote attacker to gain full administrative access to an Apache Solr cluster. When the bin/solr auth enable tool is used to set up Basic Authentication, publicly known default credentials are silently installed alongside user-specified accounts. This can lead to unauthorized control over the Solr cluster if these default credentials are not promptly removed or changed.
Меры по смягчению последствий
To mitigate this issue, administrators must either delete the default template users (superadmin, admin, search, index) from security.json or promptly change their passwords after employing the bin/solr auth enable tool. This action prevents unauthorized administrative access to the Solr cluster. A restart or reload of the Solr service may be necessary for these changes to be applied effectively.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat JBoss Enterprise Application Platform Expansion Pack | solr-core | Not affected | ||
| Red Hat Offline Knowledge Portal | offline-knowledge-portal/rhokp-rhel9 | Not affected |
Показывать по
Дополнительная информация
Статус:
EPSS
8.1 High
CVSS3
Связанные уязвимости
Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected: * Clusters where bin/solr auth enable was not used to bootstrap BasicAuth * Clusters where template users have been assigned strong passwords after bootstrap
Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected: * Clusters where bin/solr auth enable was not used to bootstrap BasicAuth * Clusters where template users have been assigned strong passwords after bootstrap
Hardcoded credentials in the Basic Authentication setup tool (bin/solr ...
Apache Solr has hardcoded credentials in the Basic Authentication setup tool
Уязвимость утилиты командной строки bin/solr auth поискового сервера Apache Solr, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации
EPSS
8.1 High
CVSS3