Data Center Security Server Advanced and Apache Log4j 1.2 vulnerabilities CVE-2020-9488 and CVE-2023-26464
search cancel

Data Center Security Server Advanced and Apache Log4j 1.2 vulnerabilities CVE-2020-9488 and CVE-2023-26464

book

Article ID: 413131

calendar_today

Updated On:

Products

Data Center Security Server Advanced Data Center Security Server

Issue/Introduction

Is Data Center Security Server (DCS) and Data Center Security Server Advanced (Data Center Security Server Advanced(DCS:SA) impacted by Apache Log4j 1.2 vulnerabilities CVE-2020-9488 and CVE-2023-26464

Environment

DCS 6.9.3

Resolution

  • CVE-2020-9488
    This affects Log4j versions up to 1.2 up to 1.2.17.
    DCS 6.9.3 uses log4j versions 2.17.1 and 2.19.0. Both of these have fixes so it is not vulnerable.

 

  • CVE-2023-26464
    This affects Log4j versions 1.x
    DCS 6.9.3 uses log4j versions 2.17.1 and 2.19.0. So it is not vulnerable.