語言:
https://github.com/apache/logging-log4j2/discussions/4168
https://github.com/apache/logging-log4j2/issues/4255
https://logging.apache.org/security/faq.html#deserialization
嚴重性: Critical
ID: 341335
檔案名稱: apache_log4j2_4255_fois_bypass_rce.nbin
版本: 1.1
類型: Remote
系列: Misc.
已發布: 2026/8/28
已更新: 2026/8/28
支援的感應器: Nessus
CPE: cpe:/a:apache:log4j
可被惡意程式利用: true
可輕鬆利用: Exploits are available
由 Nessus 利用: true
弱點發布日期: 2024/10/1