Apache Software Foundation Apache log4net 1.2.9

CPE Details

Apache Software Foundation Apache log4net 1.2.9
1.2.9_beta
2007-08-23
19h16 +00:00
2008-04-07
11h40 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:apache:log4net:1.2.9_beta:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

log4net

Version

1.2.9_beta

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2018-1285 2020-05-11 14h41 +00:00 Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.
9.8
Critique
CVE-2006-0743 2006-03-09 19h00 +00:00 Format string vulnerability in LocalSyslogAppender in Apache log4net 1.2.9 might allow remote attackers to cause a denial of service (memory corruption and termination) via unknown vectors.
5