Alert CVE-2021-44228

Modified on Tue, 14 Dec, 2021 at 3:49 PM

A flaw was found in the Apache Log4j logging library in versions from 2.0.0 and before 2.15.0. A remote attacker who can control log messages or log message parameters, can execute arbitrary code on the server via JNDI LDAP endpoint.

None of our products (Automate-IT, Pulse-IT, Share-IT) is using this Apache Log4j logging software, therefore there is no action to take on those systems.

Paris, 2021/12/14

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article