log4j zero day exploit. CVE-2021-44228
in SecuritySpy
Can you let us know if Security Spy is vulnerable to this?
Comments
-
SecuritySpy is not at all vulnerable to this. This is an exploit in the Apache web server, and SecuritySpy does not use Apache.
-
Thanks for the quick response. Makes me look good to my clients. 😀
-
um. it's an exploit in the Log4J package. As a java enterprise developer I've used it all over the place, from silent back end processing to multimedia apps.
