CVE-2019-17571 | Included in Log4j 1.2 is a SocketServer class that is vulnerable to deserialization of untrusted data which can be exploited to remotely execute arbitrary code when combined with a deserialization gadget when listening to untrusted network traffic for log data. This affects Log4j versions up to 1.2 up to 1.2.17.
Included in Log4j 1.2 is a SocketServer class that is vulnerable to deserialization of untrusted data which can be exploited to remotely execute arbitrary code when combined with a deserialization gadget when listening to untrusted network traffic for log data. This affects Log4j versions up to 1.2 up to 1.2.17.
- 🔗 lists.apache.org/thread.html/8ab32b4c9f1826f20add7c40be089…
- 🔗 lists.apache.org/thread.html/44491fb9cc19acc901f7cff34acb7…
- 🔗 lists.apache.org/thread.html/277b4b5c2b0e06a825ccec565fa65…
- 🔗 lists.apache.org/thread.html/479471e6debd608c837b9815b76ea…
- 🔗 lists.apache.org/thread.html/6114ce566200d76e3cc45c521a62c…
- 🔗 lists.apache.org/thread.html/564f03b4e9511fcba29c68fc02993…
- 🔗 lists.apache.org/thread.html/r2756fd570b6709d55a61831ca028…
- 🔗 lists.apache.org/thread.html/752ec92cd1e334a639e79bfbd689a…
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-16 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2019-17571 | Included in Log4j 1.2 is a SocketServer class that is vulnerable to deserialization of untrusted data which can be exploited to remotely execute arbitrary code when combined with a deserialization gadget when listening to untrusted network traffic for log data. This affects Log4j versions up to 1.2 up to 1.2.17.
Included in Log4j 1.2 is a SocketServer class that is vulnerable to deserialization of untrusted data which can be exploited to remotely execute arbitrary code when combined with a deserialization gadget when listening to untrusted network