The flaw in Apache Log4j 2 logging library, also known as a Log4Shell by the security community, was rated a 10 out of 10 on the Common Vulnerability Scoring System, or CVSS, due to the potential impact that it can have if leveraged by attackers. Details of the vulnerability can be found in the National Vulnerability Database (NVD) under the heading CVE-2021–44228.
In this article, I’m using a vulnerable web app to demonstrate the POC of Apache log4j
This post was created with our nice and easy submission form. Create your post!
GIPHY App Key not set. Please check settings