4.3
CVSSv2

CVE-2014-3628

Published: 06/01/2015 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Admin UI Plugin / Stats page in Apache Solr 4.x prior to 4.10.3 allows remote malicious users to inject arbitrary web script or HTML via the fieldvaluecache object.

Vulnerable Product Search on Vulmon Subscribe to Product

apache solr 4.5.0

apache solr 4.7.1

apache solr 4.10.2

apache solr 4.0.0

apache solr 4.6.1

apache solr 4.2.1

apache solr 4.10.1

apache solr 4.3.0

apache solr 4.8.0

apache solr 4.9.1

apache solr 4.7.2

apache solr 4.4.0

apache solr 4.2.0

apache solr 4.6.0

apache solr 4.5.1

apache solr 4.3.1

apache solr 4.7.0

apache solr 4.10.0

apache solr 4.8.1

apache solr 4.1.0

apache solr 4.9.0

Vendor Advisories

Cross-site scripting (XSS) vulnerability in the Admin UI Plugin / Stats page in Apache Solr 4x before 4103 allows remote attackers to inject arbitrary web script or HTML via the fieldvaluecache object ...