SAP Knowledge Base Article - Preview

3364860 - SAP Extended Enterprise Content Management by OpenText - Log4j vulnerability

Symptom

The Log4j third-party component used by OpenText™ Content Server to keep a record of activity within the application is affected by the Critical RCE Vulnerability: log4j - CVE-2021-44228.

A threat actor could potentially exploit this vulnerability to remotely execute unauthorized code on systems running Content Server.
Impacted Versions

  • Log4j: The issue is impacting the users of the below releases of Apache Log4j 2 installed with Content Server.
    • versions1: Log4j2 2.0-beta9 through 2.12.1 and 2.13.0 through 2.15.0


Read more...

Product

SAP Extended Enterprise Content Management by OpenText all versions

Keywords

KBA , XX-PART-OPT-ECM , SAP Extended Enterprise Content Management by OpenText(xECM) , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.