Apache Solr 远程代码执行漏洞(CNVD-2023-27598)

2023-04-14 Apache Solr PoC No

Description

Apache Solr 的stream.url功能存在SSRF漏洞。攻击者可通过构建恶意请求来读取Solr服务器上的文件或发起内网请求,结合其他相关特性,可造成远程代码执行

PoC

None yet. Search at https://trap.biu.life/?ref=rss

References

Related Vulnerabilities