CVE-2023-46819: Apache OFBiz: Execution of Solr plugin queries without authentication
Published Nov 7, 2023
·Updated
Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin. This issue affects Apache OFBiz: before 18.12.09.
Users are recommended to upgrade to version 18.12.09
Affected Software
1 affected component
Apache OFBiz<18.12.09
Remediation
Patch Available
Event History
Nov 7, 2023
CVE Published
via MITRE·11:02 AM
Data Sourced
via MITRE·11:02 AM
DescriptionWeakness
Data Sourced
via NVD·11:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Apache OFBiz vulnerability?
The vulnerability ID for this Apache OFBiz vulnerability is CVE-2023-46819.
2
What is the title of this Apache OFBiz vulnerability?
The title of this Apache OFBiz vulnerability is 'Execution of Solr plugin queries without authentication.'
3
What is the severity of CVE-2023-46819?
The severity of CVE-2023-46819 is medium with a score of 5.3.
4
How does this vulnerability affect Apache OFBiz?
This vulnerability affects Apache OFBiz versions before 18.12.09.
5
How can I fix this Apache OFBiz vulnerability?
To fix this Apache OFBiz vulnerability, users are recommended to upgrade to version 18.12.09.