33
/
AIzaSyB4mHJ5NPEv-XzF7P6NDYXjlkCWaeKw5bc
November 1, 2025
6262675
596948
2
Public Timelines
FAQ Get premium

dec 16, 2021 - CVE-2021-42550 CVSSv3: N/A logback 1.2.7 conf access allows for LDAP code-exec

Description:

In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craft a malicious configuration allowing to execute arbitrary code loaded from LDAP servers.

Added to timeline:

Date:

dec 16, 2021
Now
~ 3 years and 9 months ago