16 Dez 2021 Jahr - CVE-2021-42550
CVSSv3: N/A
logback 1.2.7 conf access allows for LDAP code-exec
Beschreibung:
In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craft a malicious configuration allowing to execute arbitrary code loaded from LDAP servers.
Zugefügt zum Band der Zeit:
Datum:
~ 2 years and 4 months ago