WinActor FAQ
FAQ
-

Is there any security impact of the Apache Log4j vulnerability (CVE-2021-44228) on WinActor products?
-

WinActor products are NOT affected by the vulnerability of Java log module (Apache Log4j), The details are as follows.
Products that do not use Apache Log4j
The following products do not use Apache Log4j (not included in the package). Therefore, they are not affected by this issue.
WinActor Ver.7
WinActor Talk Option
WinActor official websiteProducts using Apache Log4j 1.x
Log4j 1.x is used for the following products.
WinActor Ver.5: Log4j 1.2.16
WinActor Ver.6: Log4j 1.2.16JPCERT has reported that this version(Apache Log4j 1.x) has no vulnerability.
Products using Apache Log4j 2.x
Apache Log4j 2.x is used for the following products.
-WinActor Brain Cloud Library: Log4j 2.14.1In this case, Log4j-api is used, but NOT Log4j-core. Therefore, the product is not related to the description in JPCERT and is not affected.
-
- FAQ No:ENG00434
- Updated Date:2022/03/31


Yes