Code Monkey home page Code Monkey logo

log4jattacksurface's Introduction

Intro

Log4j impact on manufacturers and components summary from the Internet community. If Manufacturer or Component is not verified, it does not have screenshots or references to prove that it is affected.

The List

Manufacturer/Component Notes Verified
Apple TRUE
Tencent TRUE
Steam TRUE
Twitter TRUE
Baidu TRUE
DIDI TRUE
JD TRUE
NetEase TRUE
CloudFlare TRUE
Amazon TRUE
Tesla TRUE
Apache Solr TRUE
Apache Druid TRUE
Apache Flink FALSE
Apache Struts2 TRUE
flume FALSE
dubbo FALSE
IBM Qradar SIEM TRUE
PaloAlto Panorama TRUE
Redis FALSE
logstash FALSE
ElasticSearch TRUE
kafka FALSE
ghidra TRUE
ghidra server TRUE
Minecraft TRUE
PulseSecure TRUE
UniFi TRUE
VMWare TRUE
Blender TRUE
Google TRUE
Webex TRUE
LinkedIn TRUE
VMWarevCenter TRUE
Speed camera LOL TRUE

MEME XD

MEME

log4jattacksurface's People

Contributors

addisoncrump avatar cckuailong avatar kennell avatar kmskrishna avatar novtangopapa avatar yfrytchsgd avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

log4jattacksurface's Issues

Interactive List

Hi,

I want to offer collaboration on this matter. I have created a small website where findings can be added and voted on:
log4j.mwni.io

Perhaps we can sync up the lists?

Papercut MF

Papercut MF - Print Management software

https://www.papercut.com/kb/Main/Log4Shell-CVE-2021-44228

Mitigation steps:
Windows:

  • Stop the PaperCut application server (or Site Server).
    
  • Navigate to the /server/bin/win folder.
    
  • Open the service.conf file in that folder for editing (you will need to open it as Administrator).
    
  • Find the line that looks like this: wrapper.java.additional.21=-Dpc-reserved=X
    
  • Replace it with this: wrapper.java.additional.21=-Dlog4j2.formatMsgNoLookups=true
    
  • Save the file.
    
  • Start the PaperCut application server (or Site Server). 
    

macOS:

  • Stop the PaperCut application server (or Site Server).
    
  • Navigate to the /server/custom folder.
    
  • Open the launch-app-server.conf file for editing.
    
  • Add the following line to the end of the file: PC_CUSTOM_SERVER_ARG=-Dlog4j2.formatMsgNoLookups=true
    
  • Save the file.
    
  • Start the PaperCut application server (or Site Server). 
    

Linux:

  • Stop the PaperCut application server.
    
  • Navigate to the /server/bin/linux-x64 folder (or the linux-i686 or linux-common folder, depending on distro).
    
  • Open the app-monitor.conf file in that folder for editing.
    
  • Find the line that looks like this: wrapper.java.additional.21=-Dpc-reserved=X
    
  • Replace it with this: wrapper.java.additional.21=-Dlog4j2.formatMsgNoLookups=true
    
  • Save the file.
    
  • Start the PaperCut application server. 
    

Anyone know if FreeIPA is affected

I know FreeIPA runs Tomcat which I believe is vulnerable. I haven't been able to reproduce the vulnerability by injecting headers or POST data, but am curious if anyone has been able to confirm one way or another if FreeIPA is vulnerable or not.

Update List

Can someone please add:

ViewPoint Spectrum (confirmed vulnerable)
SysAid (confirmed Vulnerable)

Add vulnerable column

Hi there,

thanks a lot for providing the information in here.

Maybe I misunderstood something, but I think the table in the ReadMe might benefit highly from another column "Vulnerable: YES / NO".
At first look it seemed that PulseSecure was affected because the list said "VERIFIED: YES". However upon clicking the link to PulseSecure and checking the Post at PulseSecure, it turns out the verification resulted in all components not being vulnerable.

What do you think?

Kind regards,
Florian

ElasticSearch evidence is not elasticsearch instance

Hi, I realized the evidence posted claiming that elasticsearch is vulnerable (even though elastic claimed otherwise) is not an ElasticSearch instance but rather the elastic.co website. Could you please revise it to confirm? Thanks.

Atlassian

Atlassian Jira Server + Data center
Atlassian Confluence Server + Data Center

are also affected

Adding a column affected yes/no?

As more and more vendors are publishing security advisories about their products, would it makes sense to add an "affected" column?
This "verified" column is only there to verify if the product is effectively affected with evidence. Implying non-affected solutions should be removed from the list or are simply not listed.
It could be still great to list non-affected products with a verified statement.
What you think?

Google Voice

I guess google is logging text messages?! I just tried it and I see google IPs

Aruba Networks

Customer managed Orchestrator and legacy GMS products are affected

https://www.arubanetworks.com/website/techdocs/sdwan/docs/advisories/media/security_advisory_notice_apache_log4j2_cve_2021_44228.pdf

Corrective Actions:

  1. SSH to the Orchestrator virtual machine and log in as the admin user.
  2. Change to the /home/gms/gms directory.
  3. Open the file named “gmsserver” for editing.
  4. Locate the line that starts with: exec $JAVA_HOME/bin/java
  5. Add the text below just before com.silverpeak.gms.server.VistaPointServer

-Dlog4j.formatMsgNoLookups=true

  1. Save and Reboot

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.