CVE-2015-8796: XSS
Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/schema-browser.js in the Admin UI in Apache Solr before 5.3 allows remote attackers to inject arbitrary web script or HTML via a crafted schema-browse URL.
Other sources
Cross-site scripting (XSS) vulnerability in webapp/web/js/scripts/schema-browser.js in the Admin UI in Apache Solr before 5.3 allows remote attackers to inject arbitrary web script or HTML via a crafted schema-browse URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8796?
CVE-2015-8796 is classified as a moderate severity vulnerability due to its potential for cross-site scripting (XSS) exploitation.
How do I fix CVE-2015-8796?
To mitigate CVE-2015-8796, upgrade Apache Solr to version 5.3 or later.
What is impacted by CVE-2015-8796?
CVE-2015-8796 affects Apache Solr versions prior to 5.3, specifically the Admin UI component.
What can attackers do with CVE-2015-8796?
Attackers can exploit CVE-2015-8796 to inject arbitrary web scripts or HTML into affected systems.
Is CVE-2015-8796 related to any particular component of Apache Solr?
Yes, CVE-2015-8796 specifically affects the schema-browser JavaScript file within the Admin UI.