Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2019-0192

больше 7 лет назад

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
EPSS: Высокий
redhat логотип

CVE-2019-0192

больше 7 лет назад

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
EPSS: Высокий
nvd логотип

CVE-2019-0192

больше 7 лет назад

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
EPSS: Высокий
debian логотип

CVE-2019-0192

больше 7 лет назад

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config ...

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-xhcq-fv7x-grr2

больше 7 лет назад

Critical severity vulnerability that affects org.apache.solr:solr-core

CVSS3: 9.8
EPSS: Высокий
fstec логотип

BDU:2019-04030

больше 7 лет назад

Уязвимость программного интерфейса Config поискового сервера Apache Solr, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-0192

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
78%
Высокий
больше 7 лет назад
redhat логотип
CVE-2019-0192

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
78%
Высокий
больше 7 лет назад
nvd логотип
CVE-2019-0192

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.

CVSS3: 9.8
78%
Высокий
больше 7 лет назад
debian логотип
CVE-2019-0192

In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config ...

CVSS3: 9.8
78%
Высокий
больше 7 лет назад
github логотип
GHSA-xhcq-fv7x-grr2

Critical severity vulnerability that affects org.apache.solr:solr-core

CVSS3: 9.8
78%
Высокий
больше 7 лет назад
fstec логотип
BDU:2019-04030

Уязвимость программного интерфейса Config поискового сервера Apache Solr, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
78%
Высокий
больше 7 лет назад

Уязвимостей на страницу