CVE-2021-42550

Publication date

2021-12-16 00:00:00

Family

NCSC.ch

State

PUBLISHED

Description

In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craft a malicious configuration allowing to execute arbitrary code loaded from LDAP servers.