CVE-2021-45105 (CNNVD-202112-1493)
MEDIUM
中文标题:
Apache Log4j 安全漏洞
英文标题:
Apache Log4j2 does not always protect from infinite recursion in lookup evaluation
CVSS分数:
5.9
发布时间:
2021-12-18 11:55:08
漏洞类型:
其他
状态:
PUBLISHED
数据质量分数:
0.30
数据版本:
v3
漏洞描述
中文描述:
Apache Log4j是美国阿帕奇(Apache)基金会的一款基于Java的开源日志记录工具。 Apache Log4j2 2.0-alpha1到2.16.0版本(不包括2.12.3)存在安全漏洞,该漏洞源于自引用查找的不受控递归。攻击者可利用该漏洞在解释精心编制的字符串时导致拒绝服务。此问题已在2.17.0 和 2.12.3中修复。
英文描述:
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service when a crafted string is interpreted. This issue was fixed in Log4j 2.17.0, 2.12.3, and 2.3.1.
CWE类型:
CWE-20
CWE-674
标签:
(暂无数据)
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| Apache Software Foundation | Apache Log4j2 | - | < 2.17.0 | - |
cpe:2.3:a:apache_software_foundation:apache_log4j2:*:*:*:*:*:*:*:*
|
| apache | log4j | * | - | - |
cpe:2.3:a:apache:log4j:*:*:*:*:*:*:*:*
|
| netapp | cloud_manager | - | - | - |
cpe:2.3:a:netapp:cloud_manager:-:*:*:*:*:*:*:*
|
| debian | debian_linux | 10.0 | - | - |
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
|
| debian | debian_linux | 11.0 | - | - |
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
|
| sonicwall | email_security | * | - | - |
cpe:2.3:a:sonicwall:email_security:*:*:*:*:*:*:*:*
|
| sonicwall | network_security_manager | * | - | - |
cpe:2.3:a:sonicwall:network_security_manager:*:*:*:*:on-premises:*:*:*
|
| sonicwall | web_application_firewall | * | - | - |
cpe:2.3:a:sonicwall:web_application_firewall:*:*:*:*:*:*:*:*
|
| sonicwall | 6bk1602-0aa12-0tp0_firmware | * | - | - |
cpe:2.3:o:sonicwall:6bk1602-0aa12-0tp0_firmware:*:*:*:*:*:*:*:*
|
| sonicwall | 6bk1602-0aa22-0tp0_firmware | * | - | - |
cpe:2.3:o:sonicwall:6bk1602-0aa22-0tp0_firmware:*:*:*:*:*:*:*:*
|
| sonicwall | 6bk1602-0aa32-0tp0_firmware | * | - | - |
cpe:2.3:o:sonicwall:6bk1602-0aa32-0tp0_firmware:*:*:*:*:*:*:*:*
|
| sonicwall | 6bk1602-0aa42-0tp0_firmware | * | - | - |
cpe:2.3:o:sonicwall:6bk1602-0aa42-0tp0_firmware:*:*:*:*:*:*:*:*
|
| sonicwall | 6bk1602-0aa52-0tp0_firmware | * | - | - |
cpe:2.3:o:sonicwall:6bk1602-0aa52-0tp0_firmware:*:*:*:*:*:*:*:*
|
| oracle | agile_engineering_data_management | 6.2.1.0 | - | - |
cpe:2.3:a:oracle:agile_engineering_data_management:6.2.1.0:*:*:*:*:*:*:*
|
| oracle | agile_plm | 9.3.6 | - | - |
cpe:2.3:a:oracle:agile_plm:9.3.6:*:*:*:*:*:*:*
|
| oracle | agile_plm_mcad_connector | 3.6 | - | - |
cpe:2.3:a:oracle:agile_plm_mcad_connector:3.6:*:*:*:*:*:*:*
|
| oracle | autovue_for_agile_product_lifecycle_management | 21.0.2 | - | - |
cpe:2.3:a:oracle:autovue_for_agile_product_lifecycle_management:21.0.2:*:*:*:*:*:*:*
|
| oracle | banking_deposits_and_lines_of_credit_servicing | 2.12.0 | - | - |
cpe:2.3:a:oracle:banking_deposits_and_lines_of_credit_servicing:2.12.0:*:*:*:*:*:*:*
|
| oracle | banking_enterprise_default_management | 2.7.1 | - | - |
cpe:2.3:a:oracle:banking_enterprise_default_management:2.7.1:*:*:*:*:*:*:*
|
| oracle | banking_enterprise_default_management | 2.12.0 | - | - |
cpe:2.3:a:oracle:banking_enterprise_default_management:2.12.0:*:*:*:*:*:*:*
|
| oracle | banking_loans_servicing | 2.12.0 | - | - |
cpe:2.3:a:oracle:banking_loans_servicing:2.12.0:*:*:*:*:*:*:*
|
| oracle | banking_party_management | 2.7.0 | - | - |
cpe:2.3:a:oracle:banking_party_management:2.7.0:*:*:*:*:*:*:*
|
| oracle | banking_payments | 14.5 | - | - |
cpe:2.3:a:oracle:banking_payments:14.5:*:*:*:*:*:*:*
|
| oracle | banking_platform | 2.6.2 | - | - |
cpe:2.3:a:oracle:banking_platform:2.6.2:*:*:*:*:*:*:*
|
| oracle | banking_platform | 2.7.1 | - | - |
cpe:2.3:a:oracle:banking_platform:2.7.1:*:*:*:*:*:*:*
|
| oracle | banking_platform | 2.12.0 | - | - |
cpe:2.3:a:oracle:banking_platform:2.12.0:*:*:*:*:*:*:*
|
| oracle | banking_trade_finance | 14.5 | - | - |
cpe:2.3:a:oracle:banking_trade_finance:14.5:*:*:*:*:*:*:*
|
| oracle | banking_treasury_management | 14.5 | - | - |
cpe:2.3:a:oracle:banking_treasury_management:14.5:*:*:*:*:*:*:*
|
| oracle | business_intelligence | 5.5.0.0.0 | - | - |
cpe:2.3:a:oracle:business_intelligence:5.5.0.0.0:*:*:*:enterprise:*:*:*
|
| oracle | communications_asap | 7.3 | - | - |
cpe:2.3:a:oracle:communications_asap:7.3:*:*:*:*:*:*:*
|
| oracle | communications_billing_and_revenue_management | 12.0.0.4 | - | - |
cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.4:*:*:*:*:*:*:*
|
| oracle | communications_billing_and_revenue_management | 12.0.0.5 | - | - |
cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.5:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_console | 1.9.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_console:1.9.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_network_function_cloud_native_environment | 1.10.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_network_function_cloud_native_environment:1.10.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_network_repository_function | 1.15.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:1.15.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_network_repository_function | 1.15.1 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:1.15.1:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_network_slice_selection_function | 1.8.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_network_slice_selection_function:1.8.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_policy | 1.15.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_policy:1.15.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_security_edge_protection_proxy | 1.7.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_security_edge_protection_proxy:1.7.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_service_communication_proxy | 1.15.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_service_communication_proxy:1.15.0:*:*:*:*:*:*:*
|
| oracle | communications_cloud_native_core_unified_data_repository | 1.15.0 | - | - |
cpe:2.3:a:oracle:communications_cloud_native_core_unified_data_repository:1.15.0:*:*:*:*:*:*:*
|
| oracle | communications_convergence | 3.0.2.2.0 | - | - |
cpe:2.3:a:oracle:communications_convergence:3.0.2.2.0:*:*:*:*:*:*:*
|
| oracle | communications_convergence | 3.0.3.0 | - | - |
cpe:2.3:a:oracle:communications_convergence:3.0.3.0:*:*:*:*:*:*:*
|
| oracle | communications_convergent_charging_controller | * | - | - |
cpe:2.3:a:oracle:communications_convergent_charging_controller:*:*:*:*:*:*:*:*
|
| oracle | communications_convergent_charging_controller | 6.0.1.0.0 | - | - |
cpe:2.3:a:oracle:communications_convergent_charging_controller:6.0.1.0.0:*:*:*:*:*:*:*
|
| oracle | communications_diameter_signaling_router | * | - | - |
cpe:2.3:a:oracle:communications_diameter_signaling_router:*:*:*:*:*:*:*:*
|
| oracle | communications_eagle_element_management_system | 46.6 | - | - |
cpe:2.3:a:oracle:communications_eagle_element_management_system:46.6:*:*:*:*:*:*:*
|
| oracle | communications_eagle_ftp_table_base_retrieval | 4.5 | - | - |
cpe:2.3:a:oracle:communications_eagle_ftp_table_base_retrieval:4.5:*:*:*:*:*:*:*
|
| oracle | communications_element_manager | * | - | - |
cpe:2.3:a:oracle:communications_element_manager:*:*:*:*:*:*:*:*
|
| oracle | communications_evolved_communications_application_server | 7.1 | - | - |
cpe:2.3:a:oracle:communications_evolved_communications_application_server:7.1:*:*:*:*:*:*:*
|
| oracle | communications_interactive_session_recorder | 6.3 | - | - |
cpe:2.3:a:oracle:communications_interactive_session_recorder:6.3:*:*:*:*:*:*:*
|
| oracle | communications_interactive_session_recorder | 6.4 | - | - |
cpe:2.3:a:oracle:communications_interactive_session_recorder:6.4:*:*:*:*:*:*:*
|
| oracle | communications_ip_service_activator | 7.4.0 | - | - |
cpe:2.3:a:oracle:communications_ip_service_activator:7.4.0:*:*:*:*:*:*:*
|
| oracle | communications_messaging_server | 8.1 | - | - |
cpe:2.3:a:oracle:communications_messaging_server:8.1:*:*:*:*:*:*:*
|
| oracle | communications_network_charging_and_control | * | - | - |
cpe:2.3:a:oracle:communications_network_charging_and_control:*:*:*:*:*:*:*:*
|
| oracle | communications_network_charging_and_control | 6.0.1.0.0 | - | - |
cpe:2.3:a:oracle:communications_network_charging_and_control:6.0.1.0.0:*:*:*:*:*:*:*
|
| oracle | communications_network_integrity | 7.3.6 | - | - |
cpe:2.3:a:oracle:communications_network_integrity:7.3.6:*:*:*:*:*:*:*
|
| oracle | communications_performance_intelligence_center | 10.4.0.3 | - | - |
cpe:2.3:a:oracle:communications_performance_intelligence_center:10.4.0.3:*:*:*:*:*:*:*
|
| oracle | communications_pricing_design_center | 12.0.0.4 | - | - |
cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.4:*:*:*:*:*:*:*
|
| oracle | communications_pricing_design_center | 12.0.0.5 | - | - |
cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.5:*:*:*:*:*:*:*
|
| oracle | communications_service_broker | 6.2 | - | - |
cpe:2.3:a:oracle:communications_service_broker:6.2:*:*:*:*:*:*:*
|
| oracle | communications_services_gatekeeper | 7.0 | - | - |
cpe:2.3:a:oracle:communications_services_gatekeeper:7.0:*:*:*:*:*:*:*
|
| oracle | communications_session_report_manager | * | - | - |
cpe:2.3:a:oracle:communications_session_report_manager:*:*:*:*:*:*:*:*
|
| oracle | communications_session_route_manager | * | - | - |
cpe:2.3:a:oracle:communications_session_route_manager:*:*:*:*:*:*:*:*
|
| oracle | communications_unified_inventory_management | 7.3.5 | - | - |
cpe:2.3:a:oracle:communications_unified_inventory_management:7.3.5:*:*:*:*:*:*:*
|
| oracle | communications_unified_inventory_management | 7.4.1 | - | - |
cpe:2.3:a:oracle:communications_unified_inventory_management:7.4.1:*:*:*:*:*:*:*
|
| oracle | communications_unified_inventory_management | 7.4.2 | - | - |
cpe:2.3:a:oracle:communications_unified_inventory_management:7.4.2:*:*:*:*:*:*:*
|
| oracle | communications_user_data_repository | 12.4 | - | - |
cpe:2.3:a:oracle:communications_user_data_repository:12.4:*:*:*:*:*:*:*
|
| oracle | communications_webrtc_session_controller | 7.2.0.0 | - | - |
cpe:2.3:a:oracle:communications_webrtc_session_controller:7.2.0.0:*:*:*:*:*:*:*
|
| oracle | communications_webrtc_session_controller | 7.2.1 | - | - |
cpe:2.3:a:oracle:communications_webrtc_session_controller:7.2.1:*:*:*:*:*:*:*
|
| oracle | data_integrator | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:data_integrator:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | data_integrator | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:data_integrator:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | e-business_suite | 12.2 | - | - |
cpe:2.3:a:oracle:e-business_suite:12.2:*:*:*:*:*:*:*
|
| oracle | enterprise_manager_base_platform | 13.4.0.0 | - | - |
cpe:2.3:a:oracle:enterprise_manager_base_platform:13.4.0.0:*:*:*:*:*:*:*
|
| oracle | enterprise_manager_base_platform | 13.5.0.0 | - | - |
cpe:2.3:a:oracle:enterprise_manager_base_platform:13.5.0.0:*:*:*:*:*:*:*
|
| oracle | enterprise_manager_for_peoplesoft | 13.4.1.1 | - | - |
cpe:2.3:a:oracle:enterprise_manager_for_peoplesoft:13.4.1.1:*:*:*:*:*:*:*
|
| oracle | enterprise_manager_for_peoplesoft | 13.5.1.1 | - | - |
cpe:2.3:a:oracle:enterprise_manager_for_peoplesoft:13.5.1.1:*:*:*:*:*:*:*
|
| oracle | enterprise_manager_ops_center | 12.4.0.0 | - | - |
cpe:2.3:a:oracle:enterprise_manager_ops_center:12.4.0.0:*:*:*:*:*:*:*
|
| oracle | financial_services_analytical_applications_infrastructure | * | - | - |
cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:*:*:*:*:*:*:*:*
|
| oracle | financial_services_model_management_and_governance | 8.0.8.0.0 | - | - |
cpe:2.3:a:oracle:financial_services_model_management_and_governance:8.0.8.0.0:*:*:*:*:*:*:*
|
| oracle | financial_services_model_management_and_governance | 8.1.0.0.0 | - | - |
cpe:2.3:a:oracle:financial_services_model_management_and_governance:8.1.0.0.0:*:*:*:*:*:*:*
|
| oracle | financial_services_model_management_and_governance | 8.1.1.0.0 | - | - |
cpe:2.3:a:oracle:financial_services_model_management_and_governance:8.1.1.0.0:*:*:*:*:*:*:*
|
| oracle | flexcube_universal_banking | * | - | - |
cpe:2.3:a:oracle:flexcube_universal_banking:*:*:*:*:*:*:*:*
|
| oracle | flexcube_universal_banking | 11.83.3 | - | - |
cpe:2.3:a:oracle:flexcube_universal_banking:11.83.3:*:*:*:*:*:*:*
|
| oracle | flexcube_universal_banking | 14.5 | - | - |
cpe:2.3:a:oracle:flexcube_universal_banking:14.5:*:*:*:*:*:*:*
|
| oracle | health_sciences_empirica_signal | 9.1.0.6 | - | - |
cpe:2.3:a:oracle:health_sciences_empirica_signal:9.1.0.6:*:*:*:*:*:*:*
|
| oracle | health_sciences_empirica_signal | 9.2.0.0 | - | - |
cpe:2.3:a:oracle:health_sciences_empirica_signal:9.2.0.0:*:*:*:*:*:*:*
|
| oracle | health_sciences_inform | 6.2.1.1 | - | - |
cpe:2.3:a:oracle:health_sciences_inform:6.2.1.1:*:*:*:*:*:*:*
|
| oracle | health_sciences_inform | 6.3.2.1 | - | - |
cpe:2.3:a:oracle:health_sciences_inform:6.3.2.1:*:*:*:*:*:*:*
|
| oracle | health_sciences_inform | 7.0.0.0 | - | - |
cpe:2.3:a:oracle:health_sciences_inform:7.0.0.0:*:*:*:*:*:*:*
|
| oracle | health_sciences_information_manager | * | - | - |
cpe:2.3:a:oracle:health_sciences_information_manager:*:*:*:*:*:*:*:*
|
| oracle | healthcare_data_repository | 8.1.1 | - | - |
cpe:2.3:a:oracle:healthcare_data_repository:8.1.1:*:*:*:*:*:*:*
|
| oracle | healthcare_foundation | * | - | - |
cpe:2.3:a:oracle:healthcare_foundation:*:*:*:*:*:*:*:*
|
| oracle | healthcare_master_person_index | 5.0.1 | - | - |
cpe:2.3:a:oracle:healthcare_master_person_index:5.0.1:*:*:*:*:*:*:*
|
| oracle | healthcare_translational_research | 4.1.0 | - | - |
cpe:2.3:a:oracle:healthcare_translational_research:4.1.0:*:*:*:*:*:*:*
|
| oracle | healthcare_translational_research | 4.1.1 | - | - |
cpe:2.3:a:oracle:healthcare_translational_research:4.1.1:*:*:*:*:*:*:*
|
| oracle | hospitality_suite8 | 8.13.0 | - | - |
cpe:2.3:a:oracle:hospitality_suite8:8.13.0:*:*:*:*:*:*:*
|
| oracle | hospitality_suite8 | 8.14.0 | - | - |
cpe:2.3:a:oracle:hospitality_suite8:8.14.0:*:*:*:*:*:*:*
|
| oracle | hospitality_token_proxy_service | 19.2 | - | - |
cpe:2.3:a:oracle:hospitality_token_proxy_service:19.2:*:*:*:*:*:*:*
|
| oracle | hyperion_bi\+ | * | - | - |
cpe:2.3:a:oracle:hyperion_bi\+:*:*:*:*:*:*:*:*
|
| oracle | hyperion_data_relationship_management | * | - | - |
cpe:2.3:a:oracle:hyperion_data_relationship_management:*:*:*:*:*:*:*:*
|
| oracle | hyperion_infrastructure_technology | * | - | - |
cpe:2.3:a:oracle:hyperion_infrastructure_technology:*:*:*:*:*:*:*:*
|
| oracle | hyperion_planning | * | - | - |
cpe:2.3:a:oracle:hyperion_planning:*:*:*:*:*:*:*:*
|
| oracle | hyperion_profitability_and_cost_management | * | - | - |
cpe:2.3:a:oracle:hyperion_profitability_and_cost_management:*:*:*:*:*:*:*:*
|
| oracle | hyperion_tax_provision | * | - | - |
cpe:2.3:a:oracle:hyperion_tax_provision:*:*:*:*:*:*:*:*
|
| oracle | identity_management_suite | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:identity_management_suite:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | identity_management_suite | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:identity_management_suite:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | identity_manager_connector | 9.1.0 | - | - |
cpe:2.3:a:oracle:identity_manager_connector:9.1.0:*:*:*:*:*:*:*
|
| oracle | instantis_enterprisetrack | 17.1 | - | - |
cpe:2.3:a:oracle:instantis_enterprisetrack:17.1:*:*:*:*:*:*:*
|
| oracle | instantis_enterprisetrack | 17.2 | - | - |
cpe:2.3:a:oracle:instantis_enterprisetrack:17.2:*:*:*:*:*:*:*
|
| oracle | instantis_enterprisetrack | 17.3 | - | - |
cpe:2.3:a:oracle:instantis_enterprisetrack:17.3:*:*:*:*:*:*:*
|
| oracle | insurance_data_gateway | 1.0.1 | - | - |
cpe:2.3:a:oracle:insurance_data_gateway:1.0.1:*:*:*:*:*:*:*
|
| oracle | insurance_insbridge_rating_and_underwriting | * | - | - |
cpe:2.3:a:oracle:insurance_insbridge_rating_and_underwriting:*:*:*:*:*:*:*:*
|
| oracle | insurance_insbridge_rating_and_underwriting | 5.2.0 | - | - |
cpe:2.3:a:oracle:insurance_insbridge_rating_and_underwriting:5.2.0:*:*:*:*:*:*:*
|
| oracle | insurance_insbridge_rating_and_underwriting | 5.6.1.0 | - | - |
cpe:2.3:a:oracle:insurance_insbridge_rating_and_underwriting:5.6.1.0:*:*:*:*:*:*:*
|
| oracle | jdeveloper | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:jdeveloper:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | managed_file_transfer | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:managed_file_transfer:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | managed_file_transfer | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:managed_file_transfer:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | management_cloud_engine | 1.5.0 | - | - |
cpe:2.3:a:oracle:management_cloud_engine:1.5.0:*:*:*:*:*:*:*
|
| oracle | mysql_enterprise_monitor | * | - | - |
cpe:2.3:a:oracle:mysql_enterprise_monitor:*:*:*:*:*:*:*:*
|
| oracle | payment_interface | 19.1 | - | - |
cpe:2.3:a:oracle:payment_interface:19.1:*:*:*:*:*:*:*
|
| oracle | payment_interface | 20.3 | - | - |
cpe:2.3:a:oracle:payment_interface:20.3:*:*:*:*:*:*:*
|
| oracle | peoplesoft_enterprise_peopletools | 8.58 | - | - |
cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:*
|
| oracle | peoplesoft_enterprise_peopletools | 8.59 | - | - |
cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:*
|
| oracle | primavera_gateway | * | - | - |
cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
|
| oracle | primavera_gateway | 21.12.0 | - | - |
cpe:2.3:a:oracle:primavera_gateway:21.12.0:*:*:*:*:*:*:*
|
| oracle | primavera_p6_enterprise_project_portfolio_management | * | - | - |
cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:*
|
| oracle | primavera_p6_enterprise_project_portfolio_management | 21.12.0.0 | - | - |
cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:21.12.0.0:*:*:*:*:*:*:*
|
| oracle | primavera_unifier | 18.8 | - | - |
cpe:2.3:a:oracle:primavera_unifier:18.8:*:*:*:*:*:*:*
|
| oracle | primavera_unifier | 19.12 | - | - |
cpe:2.3:a:oracle:primavera_unifier:19.12:*:*:*:*:*:*:*
|
| oracle | primavera_unifier | 20.12 | - | - |
cpe:2.3:a:oracle:primavera_unifier:20.12:*:*:*:*:*:*:*
|
| oracle | primavera_unifier | 21.12 | - | - |
cpe:2.3:a:oracle:primavera_unifier:21.12:*:*:*:*:*:*:*
|
| oracle | retail_back_office | 14.1 | - | - |
cpe:2.3:a:oracle:retail_back_office:14.1:*:*:*:*:*:*:*
|
| oracle | retail_central_office | 14.1 | - | - |
cpe:2.3:a:oracle:retail_central_office:14.1:*:*:*:*:*:*:*
|
| oracle | retail_customer_insights | 15.0.2 | - | - |
cpe:2.3:a:oracle:retail_customer_insights:15.0.2:*:*:*:*:*:*:*
|
| oracle | retail_customer_insights | 16.0.2 | - | - |
cpe:2.3:a:oracle:retail_customer_insights:16.0.2:*:*:*:*:*:*:*
|
| oracle | retail_data_extractor_for_merchandising | 15.0.2 | - | - |
cpe:2.3:a:oracle:retail_data_extractor_for_merchandising:15.0.2:*:*:*:*:*:*:*
|
| oracle | retail_data_extractor_for_merchandising | 16.0.2 | - | - |
cpe:2.3:a:oracle:retail_data_extractor_for_merchandising:16.0.2:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 16.0.3 | - | - |
cpe:2.3:a:oracle:retail_eftlink:16.0.3:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 17.0.2 | - | - |
cpe:2.3:a:oracle:retail_eftlink:17.0.2:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 18.0.1 | - | - |
cpe:2.3:a:oracle:retail_eftlink:18.0.1:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 19.0.1 | - | - |
cpe:2.3:a:oracle:retail_eftlink:19.0.1:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 20.0.1 | - | - |
cpe:2.3:a:oracle:retail_eftlink:20.0.1:*:*:*:*:*:*:*
|
| oracle | retail_eftlink | 21.0.0 | - | - |
cpe:2.3:a:oracle:retail_eftlink:21.0.0:*:*:*:*:*:*:*
|
| oracle | retail_financial_integration | * | - | - |
cpe:2.3:a:oracle:retail_financial_integration:*:*:*:*:*:*:*:*
|
| oracle | retail_financial_integration | 14.1.3.2 | - | - |
cpe:2.3:a:oracle:retail_financial_integration:14.1.3.2:*:*:*:*:*:*:*
|
| oracle | retail_financial_integration | 15.0.3.1 | - | - |
cpe:2.3:a:oracle:retail_financial_integration:15.0.3.1:*:*:*:*:*:*:*
|
| oracle | retail_financial_integration | 19.0.0 | - | - |
cpe:2.3:a:oracle:retail_financial_integration:19.0.0:*:*:*:*:*:*:*
|
| oracle | retail_financial_integration | 19.0.1 | - | - |
cpe:2.3:a:oracle:retail_financial_integration:19.0.1:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | * | - | - |
cpe:2.3:a:oracle:retail_integration_bus:*:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | 14.1.3 | - | - |
cpe:2.3:a:oracle:retail_integration_bus:14.1.3:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | 14.1.3.2 | - | - |
cpe:2.3:a:oracle:retail_integration_bus:14.1.3.2:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | 15.0.3.1 | - | - |
cpe:2.3:a:oracle:retail_integration_bus:15.0.3.1:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | 19.0.0 | - | - |
cpe:2.3:a:oracle:retail_integration_bus:19.0.0:*:*:*:*:*:*:*
|
| oracle | retail_integration_bus | 19.0.1 | - | - |
cpe:2.3:a:oracle:retail_integration_bus:19.0.1:*:*:*:*:*:*:*
|
| oracle | retail_invoice_matching | 15.0.3 | - | - |
cpe:2.3:a:oracle:retail_invoice_matching:15.0.3:*:*:*:*:*:*:*
|
| oracle | retail_invoice_matching | 16.0.3 | - | - |
cpe:2.3:a:oracle:retail_invoice_matching:16.0.3:*:*:*:*:*:*:*
|
| oracle | retail_merchandising_system | 16.0.3 | - | - |
cpe:2.3:a:oracle:retail_merchandising_system:16.0.3:*:*:*:*:*:*:*
|
| oracle | retail_merchandising_system | 19.0.1 | - | - |
cpe:2.3:a:oracle:retail_merchandising_system:19.0.1:*:*:*:*:*:*:*
|
| oracle | retail_order_broker | 16.0 | - | - |
cpe:2.3:a:oracle:retail_order_broker:16.0:*:*:*:*:*:*:*
|
| oracle | retail_order_broker | 18.0 | - | - |
cpe:2.3:a:oracle:retail_order_broker:18.0:*:*:*:*:*:*:*
|
| oracle | retail_order_broker | 19.1 | - | - |
cpe:2.3:a:oracle:retail_order_broker:19.1:*:*:*:*:*:*:*
|
| oracle | retail_order_management_system | 19.5 | - | - |
cpe:2.3:a:oracle:retail_order_management_system:19.5:*:*:*:*:*:*:*
|
| oracle | retail_point-of-service | 14.1 | - | - |
cpe:2.3:a:oracle:retail_point-of-service:14.1:*:*:*:*:*:*:*
|
| oracle | retail_predictive_application_server | 14.1.3.46 | - | - |
cpe:2.3:a:oracle:retail_predictive_application_server:14.1.3.46:*:*:*:*:*:*:*
|
| oracle | retail_predictive_application_server | 15.0.3.115 | - | - |
cpe:2.3:a:oracle:retail_predictive_application_server:15.0.3.115:*:*:*:*:*:*:*
|
| oracle | retail_predictive_application_server | 16.0.3.240 | - | - |
cpe:2.3:a:oracle:retail_predictive_application_server:16.0.3.240:*:*:*:*:*:*:*
|
| oracle | retail_price_management | 13.2 | - | - |
cpe:2.3:a:oracle:retail_price_management:13.2:*:*:*:*:*:*:*
|
| oracle | retail_price_management | 14.0.4 | - | - |
cpe:2.3:a:oracle:retail_price_management:14.0.4:*:*:*:*:*:*:*
|
| oracle | retail_price_management | 14.1.3.0 | - | - |
cpe:2.3:a:oracle:retail_price_management:14.1.3.0:*:*:*:*:*:*:*
|
| oracle | retail_price_management | 15.0.3.0 | - | - |
cpe:2.3:a:oracle:retail_price_management:15.0.3.0:*:*:*:*:*:*:*
|
| oracle | retail_price_management | 16.0.3.0 | - | - |
cpe:2.3:a:oracle:retail_price_management:16.0.3.0:*:*:*:*:*:*:*
|
| oracle | retail_returns_management | 14.1 | - | - |
cpe:2.3:a:oracle:retail_returns_management:14.1:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | * | - | - |
cpe:2.3:a:oracle:retail_service_backbone:*:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 14.1.3 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:14.1.3:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 14.1.3.2 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:14.1.3.2:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 15.0.3.1 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:15.0.3.1:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 19.0.0 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:19.0.0:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 19.0.1 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:19.0.1:*:*:*:*:*:*:*
|
| oracle | retail_service_backbone | 19.0.1.0 | - | - |
cpe:2.3:a:oracle:retail_service_backbone:19.0.1.0:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 14.0.4.13 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:14.0.4.13:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 14.1.3.5 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:14.1.3.5:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 14.1.3.14 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:14.1.3.14:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 15.0.3.3 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:15.0.3.3:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 15.0.3.8 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:15.0.3.8:*:*:*:*:*:*:*
|
| oracle | retail_store_inventory_management | 16.0.3.7 | - | - |
cpe:2.3:a:oracle:retail_store_inventory_management:16.0.3.7:*:*:*:*:*:*:*
|
| oracle | siebel_ui_framework | * | - | - |
cpe:2.3:a:oracle:siebel_ui_framework:*:*:*:*:*:*:*:*
|
| oracle | sql_developer | * | - | - |
cpe:2.3:a:oracle:sql_developer:*:*:*:*:*:*:*:*
|
| oracle | taleo_platform | * | - | - |
cpe:2.3:a:oracle:taleo_platform:*:*:*:*:*:*:*:*
|
| oracle | utilities_framework | * | - | - |
cpe:2.3:a:oracle:utilities_framework:*:*:*:*:*:*:*:*
|
| oracle | utilities_framework | 4.4.0.0.0 | - | - |
cpe:2.3:a:oracle:utilities_framework:4.4.0.0.0:*:*:*:*:*:*:*
|
| oracle | utilities_framework | 4.4.0.2.0 | - | - |
cpe:2.3:a:oracle:utilities_framework:4.4.0.2.0:*:*:*:*:*:*:*
|
| oracle | utilities_framework | 4.4.0.3.0 | - | - |
cpe:2.3:a:oracle:utilities_framework:4.4.0.3.0:*:*:*:*:*:*:*
|
| oracle | webcenter_portal | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:webcenter_portal:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | webcenter_portal | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:webcenter_portal:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | webcenter_sites | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:webcenter_sites:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | webcenter_sites | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:webcenter_sites:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | weblogic_server | 12.2.1.3.0 | - | - |
cpe:2.3:a:oracle:weblogic_server:12.2.1.3.0:*:*:*:*:*:*:*
|
| oracle | weblogic_server | 12.2.1.4.0 | - | - |
cpe:2.3:a:oracle:weblogic_server:12.2.1.4.0:*:*:*:*:*:*:*
|
| oracle | weblogic_server | 14.1.1.0.0 | - | - |
cpe:2.3:a:oracle:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*
|
解决方案
中文解决方案:
(暂无数据)
英文解决方案:
(暂无数据)
临时解决方案:
(暂无数据)
参考链接
无标题
x_refsource_MISC
cve.org
访问
cve.org
无标题
x_refsource_CONFIRM
cve.org
访问
cve.org
VU#930724
third-party-advisory
cve.org
访问
cve.org
20211210 Vulnerabilities in Apache Log4j Library Affecting Cisco Products: December 2021
vendor-advisory
cve.org
访问
cve.org
[oss-security] 20211218 CVE-2021-45105: Apache Log4j2 does not always protect from infinite recursion in lookup evaluation
mailing-list
cve.org
访问
cve.org
DSA-5024
vendor-advisory
cve.org
访问
cve.org
无标题
x_refsource_CONFIRM
cve.org
访问
cve.org
无标题
x_refsource_CONFIRM
cve.org
访问
cve.org
无标题
x_refsource_MISC
cve.org
访问
cve.org
无标题
x_refsource_CONFIRM
cve.org
访问
cve.org
无标题
x_refsource_MISC
cve.org
访问
cve.org
无标题
x_refsource_MISC
cve.org
访问
cve.org
无标题
x_refsource_MISC
cve.org
访问
cve.org
CVSS评分详情
5.9
MEDIUM
CVSS向量:
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS版本:
3.1
机密性
NONE
完整性
NONE
可用性
HIGH
时间信息
发布时间:
2021-12-18 11:55:08
修改时间:
2024-08-04 04:39:20
创建时间:
2025-11-11 15:37:07
更新时间:
2025-11-11 15:57:02
利用信息
暂无可利用代码信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2021-45105 |
2025-11-11 15:21:09 | 2025-11-11 07:37:07 |
| NVD | nvd_CVE-2021-45105 |
2025-11-11 14:57:46 | 2025-11-11 07:45:25 |
| CNNVD | cnnvd_CNNVD-202112-1493 |
2025-11-11 15:10:47 | 2025-11-11 07:57:02 |
版本与语言
当前版本:
v3
主要语言:
EN
支持语言:
EN
ZH
安全公告
暂无安全公告信息
变更历史
v3
CNNVD
2025-11-11 15:57:02
vulnerability_type: 未提取 → 其他; cnnvd_id: 未提取 → CNNVD-202112-1493; data_sources: ['cve', 'nvd'] → ['cnnvd', 'cve', 'nvd']
查看详细变更
- vulnerability_type: 未提取 -> 其他
- cnnvd_id: 未提取 -> CNNVD-202112-1493
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
v2
NVD
2025-11-11 15:45:25
cvss_score: 未提取 → 5.9; cvss_vector: NOT_EXTRACTED → CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H; cvss_version: NOT_EXTRACTED → 3.1; affected_products_count: 1 → 200; data_sources: ['cve'] → ['cve', 'nvd']
查看详细变更
- cvss_score: 未提取 -> 5.9
- cvss_vector: NOT_EXTRACTED -> CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
- cvss_version: NOT_EXTRACTED -> 3.1
- affected_products_count: 1 -> 200
- data_sources: ['cve'] -> ['cve', 'nvd']