CVE-2019-0193
CVE Published | 2019-08-01 |
---|---|
Related CWE(s) | CWE-94: Improper Control of Generation of Code ('Code Injection') |
Related Vendor(s) | debian, apache |
Related Product(s) | solr, debian_linux |
Exploitation Reported (CISA KEV) | 2021-12-10 |
CVSS 3 Base Score | 7.2 (HIGH) |
CVSS 3 Attack Complexity | LOW |
CVSS 3 Attack Vector | NETWORK |
In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, has a feature in which the whole DIH configuration can come from a request's "dataConfig" parameter. The debug mode of the DIH admin screen uses this to allow convenient debugging / development of a DIH config. Since a DIH config can contain scripts, this parameter is a security risk. Starting with version 8.2.0 of Solr, use of this parameter requires setting the Java System property "enable.dih.dataConfigParam" to true.
Cyber Threat Graph Context
Explore how this CVE relates to the wider threat graph