Vulnerability Watch

Forum Discussion

scaveza's avatar
scaveza
Product Team
4 years ago

Update: Proof-of-Concept for Critical Apache Log4j Remote...

Update: Proof-of-Concept for Critical Apache Log4j Remote Code Execution Vulnerability Available (CVE-2021-44228)

Tenable has released scan templates for Tenable.io, Tenable.sc and Nessus Professional which are pre-configured to allow quick scanning for this vulnerability along with a tenable.sc dashboard and tenable.io dashboard and widgets. In addition, a list of Tenable plugins to identify this vulnerability will appear here as they’re released. Please note that in order to ensure the latest plugins are available on your scanner, you may want to manually update. Details on this process can be found in our blog.

Organizations that don’t currently have a Tenable product can sign up for a free trial of Nessus Professional to scan for this vulnerability.

4 Replies

    • scaveza's avatar
      scaveza
      Product Team

      In order to ensure the scan templates are available, you will need to update your plugins feed. For instructions on this process, more information and ongoing updates, please visit our blog.

  • This says scan templates have been released for tenable.sc. I have updated my feeds and I do not see anything for this. Where do I get these scan templates?

    • keith_mccullum's avatar
      keith_mccullum
      Connect Contributor

      Kevin - I had the same issue as you but did a Feeds update (as described at the bottom of the blog post) and then the Scan Policy template appeared in my SC instance.