mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 00:28:04 +02:00
21 lines
934 B
Markdown
21 lines
934 B
Markdown
### [CVE-2021-29943](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-29943)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
When using ConfigurableInternodeAuthHadoopPlugin for authentication, Apache Solr versions prior to 8.8.2 would forward/proxy distributed requests using server credentials instead of original client credentials. This would result in incorrect authorization resolution on the receiving hosts.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
No PoCs from references.
|
|
|
|
#### Github
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
- https://github.com/GGStudy-DDUp/2021hvv_vul
|
|
- https://github.com/YinWC/2021hvv_vul
|
|
- https://github.com/kenlavbah/log4jnotes
|
|
|