Pilz Hardware And Software Not Affected By “Log4Shell” Vulnerability In Software Library Log4j

DCS PILZ Log4Shell Vulnerability 1 400

December 17, 2021

 

Dear Madam or Sir,

 

On December 10th, 2021, the BSI (the German Federal Office for Information Security) published a cyber security alert on the so-called “Log4Shell” vulnerability in the software library Log4j. Log4j is used in many Java applications.

From the BSI alert:

“An IT security vendor blog [LUN2021] reports on vulnerability CVE-2021-44228 [MIT2021] in log4j versions 2.0 through 2.14.1, which may allow attackers to execute their own program code on the target system and thus compromise the server.”

 

Further information is available at:

 

Pilz’s analysis revealed the following:

  • ••Pilz hardware components do not use Java and thus no log4j. Therefore, these components are not affected.
  • ••Pilz Software products partially use log4j versions 2.0 to 2.14.1 (current vulnerability CVE-2021-44228). Analyses to date have shown that it is highly unlikely that the vulnerability can be exploited. If, contrary to expectations, there is a risk, we will publish a security advisory.
  • ••In some Pilz Software products, log4j version 1.2.x is used. The exploitation of the vulnerability in this version (CVE 2021-4104) requires, among other things, a specific configuration. However, this configuration is not used in Pilz Software products.

 

We hope this information is helpful to you. If you have any further questions, please contact our technical support:support@pilz.com.

With best regards

Pilz GmbH & Co. KG

 

Source

 

Related Articles


Latest Articles

  • Smarter Power System Monitoring with Moxa Easy-to-Use Protocol Gateways

    November 27, 2025 Achieve Comprehensive Monitoring Across Diverse Energy Sources In industrial settings, effective power system monitoring plays a vital role in ensuring operational efficiency. It involves the real-time tracking of power quality, energy consumption, and equipment conditions. However, due to the varied nature of power grids, often composed of multiple energy sources and communication… Read More…

  • maxon Story: Robotic Companion.

    November 20, 205 Remote offshore installations, dusty mines, dirty sewers: environments made by people for people. Yet operating them is dangerous. The solution? The robotic dog from ANYbotics, which can carry out inspections autonomously. maxon went to Zurich to visit one of the biggest robotics teams in Europe. Fall down, get up again. Over and… Read More…


Featured Article

Revolutionizing Material Movement with Autonomous Mobile Robots

Revolutionizing Material Movement with Autonomous Mobile Robots

In today’s fast-paced manufacturing and logistics industries, the need for efficient and flexible material movement solutions has never been greater. Traditional methods like conveyor systems, forklifts, and manual pushcarts have served us well, but they come with limitations.

That’s why Omron is thrilled to announce the launch of their game-changing MD Series of Autonomous Mobile Robots (AMRs). Read more


Products

  • DriveTag™ A Smarter Way to Streamline Inventory and Logistics

    November 27, 2025 SEW-EURODRIVE introduces DriveTag™, a smart barcode labeling solution that simplifies product identification and logistics. Designed for high-efficiency operations, DriveTag helps manufacturers and OEMs boost throughput, reduce errors, and enhance traceability across every stage of material flow. Connecting the Physical and Digital Worlds Each DriveTag is a custom-engineered barcode label applied directly to… Read More…

  • Rockwell Automation Introduces SecureOT Solution Suite to Strengthen Industrial Cybersecurity Resilience

    November 26, 2025 OT-designed platform and security services empower industrial organizations to reduce risk, maximize uptime and simplify compliance across the full cybersecurity lifecycle Rockwell Automation, Inc. (NYSE: ROK), one of the world’s largest companies dedicated to industrial automation and digital transformation, have announced the launch of SecureOT™ solution suite, a comprehensive industrial cybersecurity offering designed to… Read More…