When using ConfigurableInternodeAuthHadoopPlugin for authentication, Apache Solr versions prior to 8.8.2 would forward/proxy distributed requests using server credentials instead of original client credentials. This would result in incorrect authorization resolution on the receiving hosts.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2021-04-13T06:35:22
Updated: 2024-08-03T22:18:03.277Z
Reserved: 2021-04-01T00:00:00
Link: CVE-2021-29943
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-04-13T07:15:12.403
Modified: 2021-06-08T13:51:28.650
Link: CVE-2021-29943
Redhat