S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Nov 6, 2024

CVE-2024-45216 Scanner

CVE-2024-45216 scanner - Authorization Bypass vulnerability in Apache Solr

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.2k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-45216
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Improper Authentication vulnerability in Apache Solr. Solr instances using the PKIAuthenticationPlugin, which is enabled by default when Solr Authentication is used, are vulnerable to Authentication bypass. A fake ending at the end of any Solr API URL path, will allow requests to skip Authentication while maintaining the API contract with the original URL Path. This fake ending looks like an unprotected API path, however it is stripped off internally after authentication but before API routing. This issue affects Apache Solr: from 5.3.0 before 8.11.4, from 9.0.0 before 9.7.0. Users are recommended to upgrade to version 9.7.0, or 8.11.4, which fix the issue.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Apache Solrby Apache Software Foundation
AFFECTED< 8.11.4SAFE ✓≥ 8.11.4
solrby apache
AFFECTED< 8.11.4SAFE ✓≥ 8.11.4
Updated Aug 22, 2026View on NVD →
Detail

Apache Solr is a popular open-source search platform commonly used by enterprises for indexing and searching large volumes of data. Primarily utilized by large-scale websites and organizations, Solr facilitates fast and reliable search features across various digital content. It's especially popular within big data applications and is often integrated with data management systems. This software supports distributed indexing and load balancing, making it ideal for high-availability environments. Administrators typically use Solr to enhance search performance and data accessibility for end-users.

The authorization bypass vulnerability in Apache Solr allows unauthorized access to specific API endpoints. This bypass occurs due to the flawed handling of appended URL paths, which skips the usual authentication checks. Attackers can exploit this vulnerability by appending specific paths to URLs, gaining access to sensitive administrative functionalities. The issue affects a range of versions, making upgrading critical for secure operations.

The vulnerability leverages a specific issue within Solr’s PKIAuthenticationPlugin when processing URLs. By appending a fake URL ending to a Solr API path, malicious actors can bypass the authentication controls. Although Solr removes the fake ending before routing the API call, it erroneously bypasses the authentication check. The vulnerability is particularly dangerous because it requires no special privileges or user interaction, making it exploitable remotely. Affected endpoints include administrative paths such as /solr/admin/info/properties.

If exploited, attackers could gain unauthorized access to administrative sections of the Apache Solr instance. This access may expose sensitive configurations and operational data or allow attackers to modify system properties. In turn, it could lead to data breaches, integrity issues, or potentially allow further exploitation of the system. Malicious users may also gain visibility into backend infrastructure, increasing the potential for additional attacks.

Security for Everyone provides a powerful scanning solution for identifying critical vulnerabilities like authorization bypasses within enterprise-grade applications. Through the platform, users can proactively detect, monitor, and remediate vulnerabilities, safeguarding their systems before attackers can exploit them. With S4E, users benefit from an easy-to-navigate dashboard, detailed reporting, and actionable insights to enhance their overall security posture. By joining the S4E platform, organizations gain access to automated, reliable security checks for their exposed digital assets.

References:

Solution Advice
  • Update Apache Solr to version 9.7.0 or 8.11.4, where this vulnerability has been addressed.
  • Restrict Access: Limit access to Solr’s administrative interfaces to trusted IPs only.
  • Implement Network Segmentation: Separate Solr servers from the public network to reduce exposure.
  • Review and Harden Authentication Settings: Regularly review authentication settings and ensure secure defaults are in place.
  • Monitor Access Logs: Track access logs for any unusual activity that could indicate an attempted exploit.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.