Vulnerability identifier: #VU74611
Vulnerability risk: Low
CVSSv4.0: 5.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID:
CWE-ID:
CWE-345
Exploitation vector: Local
Exploit availability: No
Vulnerable software:
OFBiz
Other software /
Other software solutions
Vendor: Apache Foundation
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to missing verification of data authenticity within the Solr plugin when processing RMI requests sent to localhost to port 1099. A local user with access to the system can host a malicious RMI server on the system and execute arbitrary code with privileges of Apache OFBiz during server start-up or on a server restart.
Mitigation
Install updates from vendor's website.
Vulnerable software versions
OFBiz: 4.0 - 18.12.05
External links
https://lists.apache.org/thread/ytzrjc16pf357zntwk8tjby13kbx9105
https://www.openwall.com/lists/oss-security/2022/09/02/6
https://github.com/apache/ofbiz-plugins/commit/061252a80
Can this vulnerability be exploited remotely?
No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.