on 2021 Dec 13 4:16 PM
We are receiving some questions (very worried customers) about this particular component.
Is SAP BUSINESS ONE affected?
Apache Log4j JNDI Lookup Remote Code Execution Vulnerability / A vulnerability exists in Apache Log4j due to insufficient restrictions placed on the JNDI lookup functionality. An attacker could exploit this vulnerability to execute arbitrary code on vulnerable systems
Hello,
Just released - A new SAP Knowledge Based Article (KBA) (Note 3131789) is created which outlines our awareness and a workaround of this in the SAP Business One context.
Jesper
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hello Jesper,
Do other versions of SAP B1 not mentioned in the KBA is not affected by the Log4j vulnerability?
Thank you.
Angelo
Hello gabriela.lpez2,
Patch Pending = SAP Business One
Please find more information at the link below.
Thank you
Yogesh
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
100 | |
8 | |
6 | |
6 | |
5 | |
5 | |
5 | |
3 | |
3 | |
3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.