on 2021 Dec 16 9:45 PM
Is Business Objects 4.2 or 4.3 affected by CVE-2018-1285 (Log4Net) vulnerability?
Request clarification before answering.
No, they're not. Unless you've written code using the .NET SDK, all of the "standard" code for the web applications in 4.x is written in Java, which doesn't use .NET or Log4Net. The .NET SDK install includes a version of Log4Net that is vulnerable, but I don't think any of the SDK actually uses it as that version is specifically for .NET 1, which doesn't work with the current SDK.
-Dell
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Thank you Dell, you're absolutely right.
More details here.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Here is the Note https://launchpad.support.sap.com/#/notes/2914574, which is to be referred for this kind of questions.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
76 | |
22 | |
9 | |
7 | |
6 | |
5 | |
4 | |
4 | |
3 | |
3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.