CVE-2021-44228 - Apache Log4j Vulnerability
Incident Report for webinar.net Platform
Resolved
Summary

Log4j is a Java based logging audit framework within Apache. Apache Log4j2 2.14.1 and below are susceptible to a remote code execution vulnerability where an attacker can leverage this vulnerability to take full control of a machine.

Action:

We have completed an audit of the applications that use log4j and have upgraded to 2.15.0 where necessary.

We are continuing to test our services to see whether they are vulnerable, as a result of using third party components, and if/where applicable, take the necessary actions.

The webinar.net security team will continue to monitor further development regarding the CVE-2021-44228 vulnerability.
Posted Dec 12, 2021 - 23:00 PST