Data Center Security Server Advanced and Apache Log4j 1.2 vulnerabilities CVE-2020-9488 and CVE-2023-26464
book
Article ID: 413131
calendar_today
Updated On:
Products
Data Center Security Server AdvancedData Center Security Server
Issue/Introduction
Is Data Center Security Server (DCS) and Data Center Security Server Advanced (Data Center Security Server Advanced(DCS:SA) impacted by Apache Log4j 1.2 vulnerabilities CVE-2020-9488 and CVE-2023-26464
Environment
DCS 6.9.3
Resolution
CVE-2020-9488 This affects Log4j versions up to 1.2 up to 1.2.17. DCS 6.9.3 uses log4j versions 2.17.1 and 2.19.0. Both of these have fixes so it is not vulnerable.
CVE-2023-26464 This affects Log4j versions 1.x DCS 6.9.3 uses log4j versions 2.17.1 and 2.19.0. So it is not vulnerable.