CVE-2021-4104

Scores

EPSS

0.693medium69.3%
0%20%40%60%80%100%

Percentile: 69.3%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
6.0

Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Description

JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppender to perform JNDI requests that result in remote code execution in a similar fashion to CVE-2021-44228. Note this issue only affects Log4j 1.2 when specifically configured to use JMSAppender, which is not the default. Apache Log4j 1.2 reached end of life in August 2015. Users should upgrade to Log4j 2 as it addresses numerous other issues from the previous versions.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdredhatubuntu

CWEs

CWE-20CWE-502

Related Vulnerabilities

Exploits

Exploit ID: CVE-2021-4104

Source: github-poc

URL: https://github.com/cuijiung/log4j-CVE-2021-4104

Vulnerable Software (235)

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu bionic 18.04

Trait:
{  "fixed": "1.2.17-8+deb10u1ubuntu0.1"}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu focal 20.04

Trait:
{  "fixed": "1.2.17-9ubuntu0.1"}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu hirsute 21.04

Trait:
{  "fixed": "1.2.17-10ubuntu0.21.04.1"}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu impish 21.10

Trait:
{  "fixed": "1.2.17-10ubuntu0.21.10.1"}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu jammy 22.04

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu kinetic 22.10

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu lunar 23.04

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu mantic 23.10

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu noble 24.04

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu oracular 24.10

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu plucky 25.04

Trait:
{  "unaffected": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: ubuntu xenial 16.04

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Product: apache-log4j1.2

Operating System: debian

Trait:
{  "fixed": "1.2.17-11"}

Source: debian

Type: Configuration

Product: apache-log4j1.2

Operating System: debian bullseye 11

Trait:
{  "fixed": "1.2.17-10+deb11u1"}

Source: debian

Type: Configuration

Product: apache-log4j1.2

Operating System: debian buster 10

Trait:
{  "fixed": "1.2.17-8+deb10u2"}

Source: debian

Type: Configuration

Product: eap7-apache-cxf

Operating System: rhel

Trait:
{  "fixed": "3.4.10-1.SP1_redhat_00001.1.el7eap"}

Source: redhat

Type: Configuration

Product: eap7-avro

Operating System: rhel

Trait:
{  "fixed": "1.7.6-8.redhat_00003.1.el7eap"}

Source: redhat

Type: Configuration

Product: eap7-h2database

Operating System: rhel

Trait:
{  "fixed": "1.4.197-3.redhat_00004.1.el7eap"}

Source: redhat

Type: Configuration

Product: eap7-jboss-annotations-api_1.3_spec

Operating System: rhel

Trait:
{  "fixed": "2.0.1-4.Final_redhat_00001.1.el7eap"}

Source: redhat

Type: Configuration

Product: eap7-jboss-marshalling

Operating System: rhel

Trait:
{  "fixed": "2.0.15-1.Final_redhat_00001.1.el7eap"}

Source: redhat