A critical vulnerability in Apache Log4j, a widely used logging package for Java, has been found. The vulnerability can allow an attacker to execute arbitrary code by sending a crafted log message. This has been identified as CVE-2021-44228. CVE-2021-44228 enables attackers to perform remote code execution, which means they can run any code and access all data on the affected machines.
This article described the methods and processes you can use to scan enviornments for this CVE.
Server Automation
DataCenter Automation
Suggested for you are based on app category, product compatibility, popularity, rating and newness. Some apps may not show based on entitlements. Learn more about entitlements.
Release package contains instructions on how to configured both Server Automation and DCA to run a log4j scanner on a server(s) that its managing.
Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox