vulnerability

Apache Log4j Core: CVE-2021-45046: Apache Log4j2 Thread Context Lookup Pattern vulnerable to remote code execution in certain non-default configurations

Severity
5
CVSS
(AV:N/AC:H/Au:N/C:P/I:P/A:P)
Published
Jan 7, 2022
Added
Feb 4, 2022
Modified
May 2, 2023

Description

This detection identifies the presence of a vulnerable version of a vCenter Appliance stemming from CVE-2021-45046 (VMSA-2021-0028.9). Mitigation steps suggested by VMware outlined in KB87081.

Solution

vcenter-log4j-CVE-2021-44228
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.