Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
Google
OSV:DSA-5022-1
History
Dec 16, 2021 - 12:00 a.m.
apache-log4j2 - security update
Vulners
Osv
apache-log4j2 - security update
2021-12-16
00:00:00
Google
osv.dev
99
9.3 High
AI Score
Confidence
High
0.974 High
EPSS
Percentile
99.9%
JSON
Bulletin has no description
Software
CPE
Name
Operator
Version
apache-log4j2
eq
2.11.2-1
apache-log4j2
eq
2.15.0-1~deb11u1
apache-log4j2
eq
2.15.0-1~deb10u1
apache-log4j2
eq
2.15.0-1
apache-log4j2
eq
2.13.3-1
apache-log4j2
eq
2.11.1-2
apache-log4j2
eq
2.16.0-1~deb10u1
Related
nessus 20
freebsd 2
githubexploit 14
kaspersky 1
cnvd 1
ibm 67
gentoo 1
nuclei 1
fortinet 1
talosblog 1
amazon 5
checkpoint_advisories 1
openvas 25
redhat 4
vmware 10
securelist 1
redos 1
osv 4
threatpost 2
mssecure 1
ubuntu 1
debiancve 1
kitploit 2
cvelist 2
typo3 1
intel 1
thn 3
nvd 1
redhatcve 1
cve 1
suse 2
veracode 1
prion 1
attackerkb 3
ubuntucve 1
github 2
debian 1
malwarebytes 1
mmpc 1
f5 1
mageia 1
rapid7blog 1
impervablog 1
cisa_kev 1
huawei 1
fedora 1
avleonov 1
ics 1
nessus
nessus
20
Apache Log4j 2.x < 2.16.0 RCE (MacOS) (deprecated)
2021-12-17 00:00:00
FreeBSD : graylog -- remote code execution in log4j from user-controlled log input (650734b2-7665-4170-9a0a-eeced5e10a5e)
2021-12-21 00:00:00
Ubuntu 20.04 LTS : Apache Log4j 2 vulnerability (USN-5197-1)
2021-12-15 00:00:00
freebsd
freebsd
OpenSearch -- Log4Shell
2021-12-14 00:00:00
graylog -- remote code execution in log4j from user-controlled log input
2021-11-14 00:00:00
githubexploit
githubexploit
14
Exploit for Deserialization of Untrusted Data in Apache Log4J
2021-12-15 09:01:37
Exploit for Deserialization of Untrusted Data in Apache Log4J
2022-01-05 04:13:59
Exploit for Expression Language Injection in Apache Log4J
2021-12-18 11:43:56
kaspersky
kaspersky
KLA12391 RCE vulnerability in Apache Log4j
2021-12-14 00:00:00
cnvd
cnvd
Apache log4j2 denial of service vulnerability
2021-12-16 00:00:00
ibm
ibm
67
Security Bulletin: IBM Security Access Manager for Enterprise Single Sign-On is vulnerable to arbitrary code execution due to Apache Log4j (CVE-2021-4104, CVE-2021-45046)
2022-03-16 03:25:30
Security Bulletin: Multiple Vulnerabilities in Apache Log4j affect IBM Db2 Web Query for i
2021-12-21 17:06:21
Security Bulletin: Vulnerability in Apache Log4j affects IBM Cloud Private (CVE-2021-45046)
2022-01-27 12:22:10
gentoo
gentoo
Ubiquiti UniFi: remote code execution via bundled log4j
2023-10-26 00:00:00
nuclei
nuclei
Apache Log4j2 - Remote Code Injection
2021-12-23 15:41:50
fortinet
fortinet
Apache log4j2 log messages substitution (CVE-2021-44228)
2021-12-12 00:00:00
talosblog
talosblog
Quarterly Report: Incident Response Trends in Q2 2022
2022-07-26 14:03:00
amazon
amazon
5
Critical: java-1.8.0-openjdk, java-1.7.0-openjdk, java-1.6.0-openjdk
2021-12-17 17:39:00
Critical: java-17-amazon-corretto, java-11-amazon-corretto, java-1.8.0-openjdk, java-1.7.0-openjdk
2021-12-17 18:12:00
Critical: aws-kinesis-agent
2021-12-16 00:11:00
checkpoint_advisories
checkpoint_advisories
Apache Log4j Remote Code Execution (CVE-2021-44228; CVE-2021-45046)
2021-12-10 00:00:00
openvas
openvas
25
Debian: Security Advisory (DSA-5022-1)
2021-12-17 00:00:00
Apache Log4j 2.0.x Multiple Vulnerabilities (Windows, Log4Shell) - Version Check
2021-12-17 00:00:00
Apache Log4j 2.0.x Multiple Vulnerabilities (UDP, Log4Shell) - Active Check
2021-12-13 00:00:00
redhat
redhat
4
(RHSA-2021:5108) Critical: OpenShift Container Platform 4.8.z security update
2021-12-14 14:18:30
(RHSA-2021:5106) Critical: OpenShift Container Platform 4.6.z security update
2021-12-16 06:06:42
(RHSA-2021:5094) Moderate: OpenShift Container Platform 3.11.z security update
2021-12-14 05:40:01
vmware
vmware
10
VMware Response to Apache Log4j Remote Code Execution Vulnerabilities (CVE-2021-44228, CVE-2021-45046)
2021-12-10 00:00:00
VMware Response to Apache Log4j Remote Code Execution Vulnerabilities (CVE-2021-44228, CVE-2021-45046)
2021-12-10 00:00:00
VMware Response to Apache Log4j Remote Code Execution Vulnerabilities (CVE-2021-44228, CVE-2021-45046)
2021-12-10 00:00:00
securelist
securelist
CVE-2021-44228 vulnerability in Apache Log4j library
2021-12-13 14:10:21
redos
redos
ROS-20211223-01
2021-12-23 00:00:00
osv
osv
4
CVE-2021-45046
2021-12-14 19:15:07
Incomplete fix for Apache Log4j vulnerability
2021-12-14 18:01:28
Remote code injection in Log4j
2021-12-10 00:40:56
threatpost
threatpost
APT ‘Aquatic Panda’ Targets Universities with Log4Shell Exploit Tools
2021-12-30 16:16:23
Apache’s Fix for Log4Shell Can Lead to DoS Attacks
2021-12-15 14:04:19
mssecure
mssecure
MERCURY leveraging Log4j 2 vulnerabilities in unpatched systems to target Israeli organizations
2022-08-25 16:00:00
ubuntu
ubuntu
Apache Log4j 2 vulnerability
2021-12-15 00:00:00
debiancve
debiancve
CVE-2021-45046
2021-12-14 19:15:07
kitploit
kitploit
Log4J-Detector - Detects Log4J versions on your file-system within any application that are vulnerable to CVE-2021-44228 and CVE-2021-45046
2021-12-20 04:38:00
log4j-scan - A fully automated, accurate, and extensive scanner for finding vulnerable log4j hosts
2021-12-20 11:30:00
cvelist
cvelist
CVE-2021-45046 Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack
2021-12-14 16:55:09
CVE-2022-33915
2022-06-17 07:01:30
typo3
typo3
Statement on Recent log4j/log4shell Vulnerabilities (CVE-2021-44228)
2021-12-16 00:00:00
intel
intel
Intel® Product Advisory for Apache Log4j2 Vulnerabilities (CVE-2021-44228 & CVE-2021-45046)
2022-01-12 00:00:00
thn
thn
Researchers Uncover New Drokbk Malware that Uses GitHub as a Dead Drop Resolver
2022-12-09 11:25:00
Second Log4j Vulnerability (CVE-2021-45046) Discovered — New Patch Released
2021-12-15 05:26:00
Hackers Begin Exploiting Second Log4j Vulnerability as a Third Flaw Emerges
2021-12-16 06:24:00
nvd
nvd
CVE-2021-45046
2021-12-14 19:15:07
redhatcve
redhatcve
CVE-2021-45046
2022-05-07 14:27:31
cve
cve
CVE-2021-45046
2021-12-14 19:15:07
suse
suse
Security update for log4j (important)
2021-12-20 00:00:00
Security update for log4j (important)
2021-12-17 00:00:00
veracode
veracode
Denial Of Service (DoS)
2021-12-15 00:30:50
prion
prion
Default configuration
2021-12-14 19:15:00
attackerkb
attackerkb
CVE-2021-45046
2021-12-14 00:00:00
CVE-2021-44228 (Log4Shell)
2022-02-08 00:00:00
CVE-2022-33915
2022-06-17 00:00:00
ubuntucve
ubuntucve
CVE-2021-45046
2021-12-14 00:00:00
github
github
Incomplete fix for Apache Log4j vulnerability
2021-12-14 18:01:28
Remote code injection in Log4j
2021-12-10 00:40:56
debian
debian
[SECURITY] [DSA 5022-1] apache-log4j2 security update
2021-12-16 10:29:17
malwarebytes
malwarebytes
[Update: CISA issues Log4j vulnerabilities scanner] Log4j zero-day “Log4Shell” arrives just in time to ruin your weekend
2021-12-10 18:03:28
mmpc
mmpc
MERCURY leveraging Log4j 2 vulnerabilities in unpatched systems to target Israeli organizations
2022-08-25 16:00:00
f5
f5
K32171392 : Apache Log4j2 vulnerability CVE-2021-45046
2021-12-16 00:00:00
mageia
mageia
Updated log4j packages fix security vulnerability
2021-12-19 15:26:08
rapid7blog
rapid7blog
How to Protect Your Applications Against Log4Shell With tCell
2021-12-15 14:58:14
impervablog
impervablog
Log4Shell log4j Remote Code Execution – The COVID of the Internet
2022-01-06 16:41:56
cisa_kev
cisa_kev
Apache Log4j2 Deserialization of Untrusted Data Vulnerability
2023-05-01 00:00:00
huawei
huawei
Security Advisory - Apache log4j2 remote code execution vulnerabilities in some Huawei products
2021-12-15 00:00:00
fedora
fedora
[SECURITY] Fedora 34 Update: log4j-2.17.0-1.fc34
2021-12-27 00:56:30
avleonov
avleonov
Log4j “Log4Shell” RCE explained (CVE-2021-44228)
2021-12-26 22:07:17
ics
ics
Mitigating Log4Shell and Other Log4j-Related Vulnerabilities
2021-12-23 12:00:00
9.3 High
AI Score
Confidence
High
0.974 High
EPSS
Percentile
99.9%
JSON
Related for OSV:DSA-5022-1
nessus
20
freebsd
2
githubexploit
14
kaspersky
1
cnvd
1
ibm
67
gentoo
1
nuclei
1
fortinet
1
talosblog
1
amazon
5
checkpoint_advisories
1
openvas
25
redhat
4
vmware
10
securelist
1
redos
1
osv
4
threatpost
2
mssecure
1
ubuntu
1
debiancve
1
kitploit
2
cvelist
2
typo3
1
intel
1
thn
3
nvd
1
redhatcve
1
cve
1
suse
2
veracode
1
prion
1
attackerkb
3
ubuntucve
1
github
2
debian
1
malwarebytes
1
mmpc
1
f5
1
mageia
1
rapid7blog
1
impervablog
1
cisa_kev
1
huawei
1
fedora
1
avleonov
1
ics
1