SolarWinds Database Performance Analyzer (DPA)


Vendor Data Vendor Patch Exists
Community Data Vulnerable

Vendor Resources

Resource Link
Apache Log4j Critical Vulnerability (CVE-2021-44228) https://www.solarwinds.com/trust-center/security-advisories/cve-2021-44228
Database Performance Analyzer (DPA) and the Apache Log4j Vulnerability (CVE-2021-44228) https://support.solarwinds.com/SuccessCenter/s/article/Database-Performance-Analyzer-DPA-and-the-Apache-Log4j-Vulnerability-CVE-2021-44228

Community Resources

Resource Link
Apache Log4j Critical Vulnerability (CVE-2021-44228) https://www.solarwinds.com/trust-left/security-advisories/cve-2021-44228
Database Performance Analyzer (DPA) and the Apache Log4j Vulnerability (CVE-2021-44228) https://support.solarwinds.com/SuccessCenter/s/article/Database-Performance-Analyzer-DPA-and-the-Apache-Log4j-Vulnerability-CVE-2021-44228

Community Notes

Source Note
NCSC-NL CVE-2021-44228: Vulnerable
NCSC-NL Workarounds available, hotfix under development
CISAGov For more information, please see the following KB article: link
CISAGov Last Update: 12/23/2021

Sources

Date Attribution Description
2021-12-31 9:06:53 NCSC-NL Updated communityVulnerable. Updated community note. Updated community link Apache Log4j Critical Vulnerability (CVE-2021-44228). Updated community link Database Performance Analyzer (DPA) and the Apache Log4j Vulnerability (CVE-2021-44228). Updated community note.
2021-12-30 21:31:50 CISAGov Updated communityVulnerable. Updated vendorPatchExists. Updated vendor link Apache Log4j Critical Vulnerability (CVE-2021-44228). Updated vendor link Database Performance Analyzer (DPA) and the Apache Log4j Vulnerability (CVE-2021-44228). Updated community note. Updated community note.