{"id":"CVE-2019-0192","details":"In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.","aliases":["GHSA-xhcq-fv7x-grr2"],"modified":"2026-07-08T16:07:20.667946Z","published":"2019-03-07T21:29:00.203Z","references":[{"type":"WEB","url":"https://lists.apache.org/thread.html/42c5682f4acd1d03bd963e4f47ae448d7cff66c16b19142773818892%40%3Cdev.lucene.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/53e4744b14fb7f1810405f8ff5531ab0953a23dd09ce8071ce87e00d%40%3Cdev.lucene.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/b0ace855f569c6b7a0b03ba68566e53b1a1a519abd536bf38978ce4a%40%3Cdev.lucene.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/bcce5a9c532b386c68dab2f6b3ce8b0cc9b950ec551766e76391caa3%40%3Ccommits.nifi.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/d0e608c681dfbb16b4da68d99d43fa0ddbd366bb3bcf5bc0d43c56d7%40%3Cdev.lucene.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/ec9c572fb803b26ba0318777977ee6d6a2fb3a2c50d9b4224e541d5d%40%3Cdev.lucene.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/rc400db37710ee79378b6c52de3640493ff538c2beb41cefdbbdf2ab8%40%3Ccommits.submarine.apache.org%3E"},{"type":"WEB","url":"https://lists.apache.org/thread.html/rca37935d661f4689cb4119f1b3b224413b22be161b678e6e6ce0c69b%40%3Ccommits.nifi.apache.org%3E"},{"type":"WEB","url":"https://www.oracle.com/security-alerts/cpuoct2020.html"},{"type":"ADVISORY","url":"http://mail-archives.us.apache.org/mod_mbox/www-announce/201903.mbox/%3CCAECwjAV1buZwg%2BMcV9EAQ19MeAWztPVJYD4zGK8kQdADFYij1w%40mail.gmail.com%3E"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/107318"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2413"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20190327-0003/"},{"type":"ADVISORY","url":"https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/apache/lucene-solr","events":[{"introduced":"859fdefbceb3ffe088e5091fd695380e81a49c11"},{"last_affected":"b3441673c21c83762035dc21d3827ad16aa17b68"},{"introduced":"48c80f91b8e5cd9b3a9b48e6184bd53e7619e7e3"},{"last_affected":"d29c3d167fbab126d051f87d6fc246ea0511d2df"}],"database_specific":{"cpe":"cpe:2.3:a:apache:solr:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"5.0.0"},{"last_affected":"5.5.5"},{"introduced":"6.0.0"},{"last_affected":"6.6.5"}],"source":"CPE_RANGE"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-0192.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/apache/solr","events":[{"introduced":"859fdefbceb3ffe088e5091fd695380e81a49c11"},{"last_affected":"b3441673c21c83762035dc21d3827ad16aa17b68"},{"introduced":"48c80f91b8e5cd9b3a9b48e6184bd53e7619e7e3"},{"last_affected":"d29c3d167fbab126d051f87d6fc246ea0511d2df"}],"database_specific":{"cpe":"cpe:2.3:a:apache:solr:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"5.0.0"},{"last_affected":"5.5.5"},{"introduced":"6.0.0"},{"last_affected":"6.6.5"}],"source":"CPE_RANGE"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-0192.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}