Categories: US-Cert-Repository

CISA Releases Log4Shell-Related MAR



Original release date: July 28, 2022

From May through June 2022, CISA responded to an organization that was compromised by an exploitation of an unpatched and unmitigated Log4Shell vulnerability in a VMware Horizon server. CISA analyzed five malware samples obtained from the organization’s network and released a Malware Analysis Report of the findings.

Users and administrators are encouraged to review MAR 10386789-1.v1 for more information. For more information on Log4Shell, see:

  • Joint Cybersecurity Advisory (CSA) Malicious Cyber Actors Continue to Exploit Log4Shell in VMware Horizon Systems,
  • CISA’s Apache Log4j Vulnerability Guidance webpage,
  • Joint CSA Mitigating Log4Shell and Other Log4j-Related Vulnerabilities, and
  • CISA’s database of known vulnerable services on the CISA GitHub page.

This product is provided subject to this Notification and this Privacy & Use policy.



Source link

admin

Share
Published by
admin

Recent Posts

Multiple Vulnerabilities in Microsoft Products

Systems Affected   Microsoft Windows Operating Systems Microsoft Windows Remote Procedure Call (RPC) and Distributed…

3 hours ago

Cisco IOS SNMP Message Handling Vulnerability

Systems Affected Cisco routers and switches running vulnerable versions of IOS. Vulnerable IOS versions known…

1 day ago

Vulnerabilities in TCP

Systems Affected Systems that rely on persistent TCP connections, for example routers supporting BGP Overview…

2 days ago

CVS Heap Overflow Vulnerability

Systems Affected   Concurrent Versions System (CVS) versions prior to 1.11.16 CVS Features versions prior…

3 days ago

SQL Injection Vulnerabilities in Oracle E-Business Suite

Systems Affected Oracle Applications 11.0 (all releases) Oracle E-Business Suite 11i, 11.5.1 through 11.5.8 Overview…

4 days ago

Cross-Domain Vulnerability in Internet Explorer

Systems Affected   Microsoft Windows systems   Overview   Microsoft Internet Explorer (IE) contains a…

5 days ago

This website uses cookies.