Tema düzenleyici

XenForo PSA: Potential security vulnerability in Elasticsearch and more via Apache Log4j (Log4Shell)

  • Konuyu başlatan Konuyu başlatan XenTR
  • Başlangıç tarihi Başlangıç tarihi

XenTR

Yönetici
XenTR Mod
Licenced
Customer
SMS Confirmed
Katılım
3 Şub 2019
Mesajlar
2,453
Çözümler
93
Tepki puanı
2,888
Puanları
113
Konu sahibi
It has come to our attention today that a vulnerability has been discovered in popular Java logging library Log4j 2 which may allow attackers to arbitrarily execute code (remote code execution).

Apache Log4j 2 is bundled with and used in many Java applications including Elasticsearch.

XenForo itself is not directly exploitable, and we are currently investigating whether XenForo Enhanced Search can be used as a vector at all, but this is potentially significant enough that an abundance of...

Dear Guests, welcome! Please, Giriş Yap or Kayıt Ol to view hide content!


Dear Guests, welcome! Please, Giriş Yap or Kayıt Ol to view hide content!
 
Quick Jump
Geri
Üst