CISA Log4j (CVE-2021-44228) Affected Vendor & Software List
March 1, 2022 ยท View on GitHub
0-9 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
Status Descriptions
| Status | Description |
|---|---|
| Unknown | Status unknown. Default choice. |
| Affected | Reported to be affected by CVE-2021-44228. |
| Not Affected | Reported to NOT be affected by CVE-2021-44228 and no further action necessary. |
| Fixed | Patch and/or mitigations available (see provided links). |
| Under Investigation | Vendor investigating status. |
Software List
This list has been populated using information from the following sources:
- Kevin Beaumont
- SwitHak
- National Cyber Security Centre - Netherlands (NCSC-NL)
NOTE: This file is automatically generated. To submit updates, please refer to
CONTRIBUTING.md.
| Vendor | Product | Affected Versions | Patched Versions | Status | Vendor Links | Notes | References | Reporter | Last Updated |
|---|---|---|---|---|---|---|---|---|---|
| Objectif Lune | Unknown | link | cisagov | 2022-01-12 | |||||
| OCLC | Unknown | link | cisagov | 2022-01-12 | |||||
| Octopus | Unknown | link | cisagov | 2022-01-12 | |||||
| Okta | Advanced Server Access | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta Access Gateway | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta AD Agent | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta Browser Plugin | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta IWA Web Agent | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta LDAP Agent | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta Mobile | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta On-Prem MFA Agent | < 1.4.6 | Affected | link | cisagov | 2021-12-12 | |||
| Okta | Okta RADIUS Server Agent | < 2.17.0 | Affected | link | cisagov | 2021-12-12 | |||
| Okta | Okta Verify | Unknown | link | cisagov | 2021-12-12 | ||||
| Okta | Okta Workflows | Unknown | link | cisagov | 2021-12-12 | ||||
| Onespan | Unknown | link | cisagov | 2022-01-12 | |||||
| Opengear | Unknown | link | cisagov | 2022-01-12 | |||||
| OpenMRS TALK | Unknown | link | cisagov | 2022-01-12 | |||||
| OpenNMS | Unknown | link | cisagov | 2022-01-12 | |||||
| OpenSearch | Unknown | link | cisagov | 2022-01-12 | |||||
| OpenText | Unknown | link | cisagov | 2021-12-23 | |||||
| Opto 22 | GROOV-AR1, GROOV-AR1-BASE, GROOV-AR1-SNAP | < 4.3g | 4.3g | Fixed | link | The Log4j vulnerability affects all products running groov View software | cisagov | 2022-01-13 | |
| Opto 22 | GROOV-AT1, GROOV-AT1-SNAP | < 4.3g | 4.3g | Fixed | link | The Log4j vulnerability affects all products running groov View software | cisagov | 2022-01-13 | |
| Opto 22 | GROOV-SVR-WIN, GROOV-SVR-WIN-BASE, GROOV-SVR-WIN-SNAP | < 4.3g | 4.3g | Fixed | link | The Log4j vulnerability affects all products running groov View software | cisagov | 2022-01-13 | |
| Opto 22 | GRV-EPIC-PR1, GRV-EPIC-PR2 | < 3.3.2 | 3.3.2 | Fixed | link | The Log4j vulnerability affects all products running groov View software | cisagov | 2022-01-13 | |
| Oracle | Unknown | link | The support document is available to customers only and has not been reviewed by CISA | cisagov | 2021-12-17 | ||||
| Oracle | Enterprise Manager | 13.5, 13.4 & 13.3.2 | Affected | link | Patch status and other security guidance is restricted to Oracle account/support members. The support document is available to customers only and has not been reviewed by CISA. | cisagov | 2021-12-17 | ||
| Oracle | Exadata | <21.3.4 | Affected | link | Patch status and other security guidance is restricted to Oracle account/support members. The support document is available to customers only and has not been reviewed by CISA. | cisagov | 2021-12-17 | ||
| Orgavision | Unknown | link | cisagov | 2022-01-12 | |||||
| Osirium | PAM | Unknown | link | cisagov | 2022-01-12 | ||||
| Osirium | PEM | Unknown | link | cisagov | 2022-01-12 | ||||
| Osirium | PPA | Unknown | link | cisagov | 2022-01-12 | ||||
| OTRS | Unknown | link | cisagov | 2022-01-12 | |||||
| OVHCloud | Unknown | link | cisagov | 2022-01-12 | |||||
| OwnCloud | Unknown | link | cisagov | 2022-01-12 | |||||
| OxygenXML | Author | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Developer | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Editor | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Oxygen Content Fusion | 2.0, 3.0, 4.1 | Affected | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | |||
| OxygenXML | Oxygen Feedback Enterprise | 1.4.4 & older | Affected | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | |||
| OxygenXML | Oxygen License Server | v22.1 to v24.0 | Affected | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | |||
| OxygenXML | Oxygen PDF Chemistry | v22.1, 23.0, 23.1, 24.0 | Affected | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | |||
| OxygenXML | Oxygen SDK | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Plugins (see advisory link) | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Publishing Engine | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | Web Author | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 | ||||
| OxygenXML | WebHelp | Unknown | https://www.oxygenxml.com/security/advisory/CVE-2021-44228.html | cisagov | 2021-12-17 |