



Exploitation attempts in the wild have been confirmed by VMware.Workarounds for CVE-2021-44228 and CVE-2021-45046 are documented in the ‘Workarounds’ column of the ‘Response Matrix’ below. Multiple products impacted by remote code execution vulnerability and partial denial of service vulnerability via Apache Log4j (CVE-2021-44228, CVE-2021-45046).Ī malicious actor with network access to an impacted VMware product may exploit this issue to gain full control of the target system and/or perform a denial of service attack. We can find the complete detail in the following link On Friday, a vulnerability was detected in Apache that affects several VMware products where a user could access its operating system through the vulnerability of Apache and JAVA.
