To get in touch about speaking at your event, email [email protected]

cje
press Jan 7, 2022 · BankInfoSecurity

Researchers Discover H2 Database Flaw Similar to Log4Shell

BankInfoSecurity reported on a critical remote code execution vulnerability discovered in the H2 database console that shares architectural similarities with the Log4Shell flaw. The report detailed how the vulnerability in H2's console component could enable attackers to execute arbitrary code remotely, drawing comparisons to the widespread Log4Shell incident that had recently affected numerous organizations.

Source description — as published

Details the discovery of a critical remote code execution vulnerability in the H2 database console, which is architecturally similar to the infamous Log4Shell flaw.