⚡ Get unlimited AI threat intel — exploit-db.ai →
CRITICAL

CVE-2021-44228

⚡ Llama-3 AI Analysis

Executive Briefing

Log4Shell: The most critical Java vulnerability in a decade. Unauthenticated RCE via JNDI injection in Apache Log4j2. Patch to 2.17.1+ immediately. Mass-exploited within hours of disclosure by nation-states and ransomware groups worldwide.

NVD Description

Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled.

Want alerts for CVEs like this?

Exploit-DB.ai delivers real-time AI-triaged zero-day alerts directly to your inbox.

Activate Supernova →

Official Sources