Trott / Log4jAttackSurface

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Intro

Log4j impact manufacturers and components summary from the Internet community. Welcome everyone to submit mr to perfect the possible influence surface.

To be continued

Affect the components

Apache Solr

Apache Druid

Apache Flink

Apache Struts2

flume

dubbo

IBM Qradar SIEM

  • /opt/qradar/support/mod_log4j.pl

  • logging

PaloAlto Panorama

-Redis- (not a JAVA app)

Elastic

kafka

ghidra

PulseSecure

UniFi

VMWare

A critical vulnerability in Apache Log4j identified by CVE-2021-44228 
has been disclosed that may allow for remote code execution.
VMware has classified this issue as critical and is working on 
publishing fixes and workarounds as a priority.

About