Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-44825

Опубликовано: 01 июн. 2026
Источник: redhat
CVSS3: 8.1
EPSS Низкий

Описание

Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected:

  • Clusters where bin/solr auth enable was not used to bootstrap BasicAuth
  • Clusters where template users have been assigned strong passwords after bootstrap

    A flaw was found in Apache Solr. Hardcoded credentials in the Basic Authentication setup tool allow a remote attacker to gain full administrative access to the cluster. This occurs when the bin/solr auth enable tool is used, as publicly known default credentials are silently installed alongside user-specified accounts. This vulnerability can lead to unauthorized control over the Solr cluster.

Отчет

This flaw is rated as Important because it allows a remote attacker to gain full administrative access to an Apache Solr cluster. When the bin/solr auth enable tool is used to set up Basic Authentication, publicly known default credentials are silently installed alongside user-specified accounts. This can lead to unauthorized control over the Solr cluster if these default credentials are not promptly removed or changed.

Меры по смягчению последствий

To mitigate this issue, administrators must either delete the default template users (superadmin, admin, search, index) from security.json or promptly change their passwords after employing the bin/solr auth enable tool. This action prevents unauthorized administrative access to the Solr cluster. A restart or reload of the Solr service may be necessary for these changes to be applied effectively.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat JBoss Enterprise Application Platform Expansion Packsolr-coreNot affected
Red Hat Offline Knowledge Portaloffline-knowledge-portal/rhokp-rhel9Not affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-1392
https://bugzilla.redhat.com/show_bug.cgi?id=2483782solr: Apache Solr: Remote attacker gains administrative access via hardcoded credentials in Basic Authentication setup.

EPSS

Процентиль: 41%
0.00529
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
2 месяца назад

Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected: * Clusters where bin/solr auth enable was not used to bootstrap BasicAuth * Clusters where template users have been assigned strong passwords after bootstrap

CVSS3: 8.1
nvd
2 месяца назад

Hardcoded credentials in the Basic Authentication setup tool (bin/solr auth enable) in Apache Solr versions 9.4.0 through 9.10.1 and 10.0.0 allows a remote attacker to gain full administrative access to the cluster via publicly known default credentials installed silently alongside the user-specified account. As an immediate workaround without upgrading, delete the template users (superadmin, admin, search, index) from security.json or change their passwords. The future, not yet released, versions 9.11.0 and 10.1.0 will not be vulnerable, and it will be enough to upgrade to solve the issue. Not affected: * Clusters where bin/solr auth enable was not used to bootstrap BasicAuth * Clusters where template users have been assigned strong passwords after bootstrap

CVSS3: 8.1
debian
2 месяца назад

Hardcoded credentials in the Basic Authentication setup tool (bin/solr ...

CVSS3: 8.1
github
2 месяца назад

Apache Solr has hardcoded credentials in the Basic Authentication setup tool

CVSS3: 8.1
fstec
2 месяца назад

Уязвимость утилиты командной строки bin/solr auth поискового сервера Apache Solr, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 41%
0.00529
Низкий

8.1 High

CVSS3