{"id":"BIT-solr-2024-52012","summary":"Apache Solr: Configset upload on Windows allows arbitrary path write-access","details":"Relative Path Traversal vulnerability in Apache Solr.\n\nSolr instances running on Windows are vulnerable to arbitrary filepath write-access, due to a lack of input-sanitation in the \"configset upload\" API.  Commonly known as a \"zipslip\", maliciously constructed ZIP files can use relative filepaths to write data to unanticipated parts of the filesystem.  \nThis issue affects Apache Solr: from 6.6 through 9.7.0.\n\nUsers are recommended to upgrade to version 9.8.0, which fixes the issue.  Users unable to upgrade may also safely prevent the issue by using Solr's \"Rule-Based Authentication Plugin\" to restrict access to the configset upload API, so that it can only be accessed by a trusted set of administrators/users.","aliases":["CVE-2024-52012","GHSA-4p5m-gvpf-f3x5"],"modified":"2026-09-08T08:48:19.345069540Z","published":"2025-01-29T07:20:30.008Z","database_specific":{"severity":"Medium","cpes":["cpe:2.3:a:apache:solr:*:*:*:*:*:maven:*:*"]},"references":[{"type":"ADVISORY","url":"https://lists.apache.org/thread/yp39pgbv4vf1746pf5yblz84lv30vfxd"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2025/01/26/2"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-52012"}],"affected":[{"package":{"name":"solr","ecosystem":"Bitnami","purl":"pkg:bitnami/solr"},"ranges":[{"type":"SEMVER","events":[{"introduced":"6.6.0"},{"fixed":"9.8.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/solr/BIT-solr-2024-52012.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N"}]}],"schema_version":"1.9.0"}