CVE-2019-0192 is a critical deserialization vulnerability affecting Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, as well as related NetApp products. An unauthenticated attacker can exploit the Config API to configure the JMX server, pointing it to a malicious RMI server to achieve remote code execution (RCE) on the Solr instance. This vulnerability carries a CVSS score of 9.8 (Critical) due to its network-based attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. While not listed on CISA's KEV catalog, its high EPSS score (0.9346) and the existence of Nuclei templates suggest a high likelihood of exploitation, further supported by significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.0.0, <= 5.5.5CPE matchmatch criteria | cpe:2.3:a:apache:solr:*:*:*:*:*:*:*:* | ||
>= 6.0.0, <= 6.6.5CPE matchmatch criteria | cpe:2.3:a:apache:solr:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:storage_automation_store:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.