Acuity Brands Message on Apache Log4j Vulnerability - CVE-2021-44228

A critical vulnerability in Apache Log4j, a logging subsystem commonly used in Java-based applications and solutions, was identified and assigned CVE identifier CVE-2021-44228. Proof-of-concept and exploit code has been published, and ongoing exploitation has been reported.

Upon disclosure of this issue the Acuity Brands Security Team performed an investigation. We found that no products or services of Acuity Brands or its subsidiaries are impacted by the Apache Log4j vulnerability. This includes the Distech Controls and Acuity Brands lines of ECLYPSE building and lighting controllers. Acuity Brands is not recommending any actions relative to our products or services at this time.

Previous Article
Distech Controls SOLSTYCE DALI Gateway MQX RTOS DHCP and UDP Vulnerabilities
Distech Controls SOLSTYCE DALI Gateway MQX RTOS DHCP and UDP Vulnerabilities

Security Vulnerability Announcement on SOLSTYCE DALI Gateways. Fixed software is available.

Next Article
Importance of an effective security awareness training program for technology companies
Importance of an effective security awareness training program for technology companies

Organizations must protect and secure their data by cultivating a security culture and investing in ongoing...