KNOWLEDGE BASE

Tableau Server Unaffected by Apache Solr 7.4.0 <= 7.7.3 / 8.0.0 <= 8.11.0 RCE


Published: 27 Dec 2022
Last Modified Date: 17 Feb 2023

Issue

CVE-2021-44228
​​​​​​​Security Scans may indicate an Apache Solr 7.4.0 <= 7.7.3 / 8.0.0 <= 8.11.0 RCE vulnerability in Tableau Server.
 

Environment

  • Tableau Server

Resolution

The version of Apache Solr 8.10 package found in Tableau Products is not impacted by CVE-2021-44228 because it does not use the default Log4J version 2.14.1 component.. Tableau has addressed all issues identified in CVE-2021-44228.

Did this article resolve the issue?