CVE-2017-12629

CVE-2017-12629

Remote code execution occurs in Apache Solr before 7.1 with Apache Lucene before 7.1 by exploiting XXE in conjunction with use of a Config API add-listener command to reach the RunExecutableListener class. Elasticsearch, although it uses Lucene, is NOT vulnerable to this.

Source: CVE-2017-12629

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다