Dell EMC OpenManage Plug-in for Nagios Core False Positive Security Vulnerability

Résumé: This article provides a list of security vulnerabilities that cannot be exploited on Dell EMC OpenManage Plug-in for Nagios Core version 3.1 and earlier, but which may be identified by security scanners. ...

Cet article concerne Cet article ne concerne pas Cet article n’est associé à aucun produit spécifique. Toutes les versions du produit ne sont pas identifiées dans cet article.

Type d’article de sécurité

Security KB

Identifiant CVE

The CVE IDs are listed in the table below.

Résumé des problèmes

See the 'Recommendation' section below for details on each CVE.

Recommandations

The vulnerabilities that are listed in the below table are in order by the date on which Dell EMC OpenManage Plug-in for Nagios Core Engineering determined that the Dell EMC OpenManage Plug-in for Nagios Core version 3.1 and earlier are not vulnerable.
 
Third-party  Component CVE IDs Summary of Vulnerability Reason why Product is not Vulnerable Date Determined False Positive
Apache Log4j 1.2.17-cloudera1 CVE-2021-4104  Requires use of JMSAppender, a nonstandard configuration Does not use JMSAppender configuration December 20, 2021
Apache Log4j 1.2.17-cloudera1 CVE-2019-17571  Requires use of SocketServer, a nonstandard configuration Does not use SocketServer configuration December 20, 2021
Apache Log4j 1.2.17-cloudera1 CVE-2022-23302 Requires use of JMSAppender, a nonstandard configuration Does not use JMSAppender configuration March 11, 2022
Apache Log4j 1.2.17-cloudera1 CVE-2022-23305 Requires use of JDBCAppender, a nonstandard configuration Does not use JDBCAppender configuration March 11, 2022
Apache Log4j 1.2.17-cloudera1 CVE-2022-23307 Requires use of Chainsaw, a nonstandard configuration Does not use Chainsaw configuration March 11, 2022

Produits concernés

Dell OpenManage Plug-in for Nagios Core, Dell OpenManage Plug-in for Nagios Core version 2.0, Dell OpenManage Plug-in for Nagios Core version 1.0, Dell EMC OpenManage Plug-in for Nagios Core - Current Version , Dell OpenManage Plug-in for Nagios Core version 2.1, Dell EMC OpenManage Plug-in v3.0 for Nagios Core, Product Security Information ...
Propriétés de l’article
Numéro d’article: 000195050
Type d’article: Security KB
Dernière modification: 01 Apr 2022
Version:  2
Trouvez des réponses à vos questions auprès d’autres utilisateurs Dell
Services de support
Vérifiez si votre appareil est couvert par les services de support.