Apache Log4j Vulnerubility

Kyojuro
Here to help

Apache Log4j Vulnerubility

Our SD WAN got flagged for Apache Log4j 2.0.x < 2.15.0 RCE Vulnerability (HTTP, Log4Shell) - Active Check

In our Security Monitor but none of the other SD WANs got this Vulnerability. Anyone familiar with this? 

 

Thank you. 

 

3 Replies 3
ww
Kind of a big deal
Kind of a big deal

What sdwan is our sdwan and other sdwans? 

Al running same firmware?

And what Security Monitor?

 

Kyojuro
Here to help

All SD WANS are MX68s. 

All running same firmware (current version)

Arctic Wolf. 

DarrenOC
Kind of a big deal
Kind of a big deal

What do you see when you go into Security Centre and look at the Mx events? Click into the packet captures and you’ll see which endpoint is possibly affected.

Darren OConnor | doconnor@resalire.co.uk
https://www.linkedin.com/in/darrenoconnor/

I'm not an employee of Cisco/Meraki. My posts are based on Meraki best practice and what has worked for me in the field.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels