[mapguide-users] Log4J Unauthenticated RCE CVE-2021-44228 Vulnerability

Jackie Ng jumpinjackie at gmail.com
Tue Dec 14 16:59:39 PST 2021

The Tomcat that is bundled with MapGuide does not use log4j (there are no
log4j jar files installed). You would only be potentially affected if your
MapGuide Java application itself brings in the log4j dependency.

- Jackie

You wrote:

Has anyone done any studies if Mapguide is affected by this problem?
Thanks in advance


*Leonardo Bressan*
Settore tecnico
leonardo.bressan at abitat.it
+39 348 2343422 | skype: leonardo.bressanabitat

*Abitat SIT Srl*
Pojana Maggiore (VI), Via Roma 5 - 36026 | Ufficio: 0444 794127 | Fax: 0444

In ogni momento l’interessato, destinatario del messaggio, può consultare
la nostra informativa policy privacy contenuta in questo link
Questo messaggio e ogni eventuale allegato sono confidenziali e destinati
all'uso esclusivo del destinatario.

*Please Note: I no longer create new posts or post replies to any OSGeo
mailing list through nabble. As a result, you most likely won't see this
message appear on nabble's view of any OSGeo mailing list and may only see
this message through mailing list archives or depending on your mailing
list subscription settings, through daily message digests or automated
notifications from the mailing lists.*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.osgeo.org/pipermail/mapguide-users/attachments/20211215/1a1245b5/attachment.html>

More information about the mapguide-users mailing list