Rewterz
Rewterz Threat Advisory –CVE-2016-4437 – Apache Shiro remember me Vulnerability
June 1, 2022
Rewterz
Rewterz Threat Alert – ZLoader Banking Trojan – Active IOCs
June 1, 2022

Rewterz Threat Advisory –CVE-2019-17558 – Apache Solr VelocityResponseWriter function Vulnerability

Severity

High

Analysis Summary

CVE-2019-17558

Apache Solr could allow a remote attacker to execute arbitrary code on the system. By providing a Velocity template through the VelocityResponseWriter, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2019-17558

Affected Vendors

Apache

Affected Products

  • Apache Solr 5.0
  • Apache Solr 8.3.1

Remediation

Upgrade to the latest version of Solr, available from the Apache Web site.

Apache Website