Apache Alert
3088Warning Date
Severity Level
Warning Number
Target Sector
12 December, 2021
● Critical
2021-4026
All
Description:
Apache has released a security alert to address several vulnerabilities in the following product:
- Apache Log4j 2
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code remotely
- Man in the middle attack
Best practice and Recommendations:
The CERT team encourages users to review Apache security advisory and apply the necessary mitigations and updates: