CVE-2021-42550
In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could
In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craft a malicious configuration allowing to execute arbitrary code loaded from LDAP servers.
MEDIUM · CVSS 6.6
EPSS 0.02729
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0