A vulnerability scan (Nessus) may detect CVE-2026-34480 related to Apache Log4j on DX Unified Infrastructure Management (UIM) servers. This vulnerability pertains to an XMLLayout sanitization issue in Log4j versions 2.0-alpha1 through 2.25.3, which can result in malformed XML or logging exceptions.
nic_monitor probe versions 1.60 and earlierThe issue is caused by the third-party Apache Log4j library version installed with the nic_monitor probe.
Upgrade the nic_monitor probe to version 2.00 or higher. This version utilizes Log4j 2.25.4, which remediates CVE-2026-34480.
nic_monitor 2.0 from the Nimsoft Archive.