Apache log4net 的 RemoteSyslogAppender 存在输出编码或转义不当漏洞。 该漏洞导致记录中所有非可见 ASCII 字符和空格字符被直接移除,而非进行正确转义,因此非 ASCII 文本和控制字符(如制表符)会无声消失。攻击者可以利用此特性,通过在其数据中插入特殊字符(例如零宽空格),使原本不同的值在日志记录中变得相同。例如,包含零宽空格的用户名可能在日志中显示为 “admin”,从而引发混淆或安全绕过。 仅使用 RemoteSyslogAppender 的应用程序受此漏洞影响。 该漏洞
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache log4net | 1.2.12< 3.5.0 |
affected |
56a2e146e21ff4737e1ff3ec308810e667873947< 77717061b20d4346b6c0ce6b54643d85fb348bc7 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache log4net | 1.2.12 ~ 3.5.0 | - |
|
| Apache Software Foundation | Apache log4net | 56a2e146e21ff4737e1ff3ec308810e667873947 ~ 77717061b20d4346b6c0ce6b54643d85fb348bc7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94114 | 5.9 MEDIUM | Apache Commons BCEL: Nested Code/Record attributes drive unbounded parse-time recursion in |
| CVE-2026-105243 | 5.3 MEDIUM | Apache log4net: Oversize EventLogAppender record silently discarded |
| CVE-2026-105242 | 5.3 MEDIUM | Apache log4net: Request validation failure drops the event in the aspnet-request converter |
| CVE-2026-105241 | 5.3 MEDIUM | Apache log4net: Unencodable content discards a whole SmtpPickupDirAppender batch |
| CVE-2026-105240 | 5.3 MEDIUM | Apache log4net: NUL character truncates OutputDebugStringAppender records |
| CVE-2026-105239 | 5.3 MEDIUM | Apache log4net: NUL character truncates EventLogAppender records |
| CVE-2026-105111 | 4.7 MEDIUM | Apache Commons BCEL: Class2HTML emits unescaped class strings, enabling stored XSS |
No comments yet