LINK It is not easy to be concise in listing VMware products affected by Log4j. So goto the link above for details.
LINK Time to look again if you have Cisco products in your network, including Webex.
LINK Google Project Zero has identified 2 Critical and High rated Vulnerabilities in Zoom Clients and Zoom MMR systems. Patches were released by the Vendor.
LINK If you needed more evidence to see how mad log4j could be, here you go.
LINK CISA has added more vulnerabilities that need to be resolved for organizations. If you are looking for a complete list of all these Vulnerabilities, here is a CSV of the list.
MSSPalert has some good content that I wanted to Share for those that are needing Log4j info. Log4j Timeline of Events, Attacks, Advice Patches – LINK Log4j Scanners and Threat Hunters – LINK
LINK There are so many fixes here, I suggest ANYONE that has anything Oracle, go to the above link to see if they are vulnerable to something.
LINK Zoho’s ManageEngine product seems to always be under attack. They just released a new CRITICAL update. Please update your installation.
https://securityaffairs.co/wordpress/126856/hacking/windows-out-of-band-emergency-fixes.htmlLINK January’s patching had some issues, this is supposed to fix those problems.
LINK If you have anything from Ivanti, check the link above to see what might be vulnerable.