S4E just found a high-severity finding from ssl sweet32 vulnerability checker
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2017-12629 Scanner

CVE-2017-12629 scanner - Remote Code Execution (RCE) vulnerability in Apache Solr and Apache Lucene

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.2k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2017-12629
9.8
CVSS

Remote code execution occurs in Apache Solr before 7.1 with Apache Lucene before 7.1 by exploiting XXE in conjunction with use of a Config API add-listener command to reach the RunExecutableListener class. Elasticsearch, although it uses Lucene, is NOT vulnerable to this. Note that the XML external entity expansion vulnerability occurs in the XML Query Parser which is available, by default, for any query request with parameters deftype=xmlparser and can be exploited to upload malicious data to the /upload request handler or as Blind XXE using ftp wrapper in order to read arbitrary local files from the Solr server. Note also that the second vulnerability relates to remote code execution using the RunExecutableListener available on all affected versions of Solr.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Apache Solr before 7.1 with Apache Lucene before 7.1by n/a
Apache Solr before 7.1 with Apache Lucene before 7.1
Apache Solr before 7.1 with Apache Lucene before 7.1by n/a
AFFECTED< 5.3.1-redhat-2SAFE ✓≥ 5.3.1-redhat-2
Updated Aug 22, 2026View on NVD →
Detail

Apache Solr and Apache Lucene are open-source search platforms that allow businesses to incorporate full-text search functionality into their applications. Solr is built on top of Lucene and provides enterprise-level indexing, search, and analytics capabilities. These products can be used to enable search features within web applications, e-commerce sites, and other digital interfaces. 

One major vulnerability that was detected in Apache Solr and Lucene is CVE-2017-12629. This vulnerability allows attackers to execute remote code by exploiting the XML External Entity (XXE) expansion. Through the use of a Config API add-listener command, the attacker can reach the RunExecutableListener class in versions of Solr before 7.1 and versions of Lucene before 7.1. 

When exploited, this vulnerability can lead to serious consequences for businesses that rely on Solr and Lucene to power their search functionality. Attackers can use XXE to upload malicious data through the /upload request handler or execute code through the RunExecutableListener to gain access to sensitive data or perform malicious actions on the server. This can lead to significant financial loss, reputational damage, and legal consequences.

At s4e.io, we offer pro features that can help businesses identify vulnerabilities in their digital assets quickly and easily. Our platform provides real-time threat intelligence and actionable insights to help protect against cyber threats such as CVE-2017-12629. By using our services, businesses can ensure that their applications and systems are secure against known vulnerabilities and emerging threats.

 

REFERENCES

Solution Advice

To protect against this vulnerability, businesses using Solr and Lucene should take the following precautions:

  • Upgrade to the latest version of Solr and Lucene, which contain fixes for CVE-2017-12629
  • Disable the XML Query Parser if it is not needed for the application
  • Configure the server to restrict access to the Config API to authorized users only
  • Monitor logs for suspicious activity and network traffic

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2017-12629 scanner - Remote Code Execution (RCE) vulnerability in Apache Solr and Apache Lucene | S4E