No Impact Found with Log4j Vulnerability on Brekeke Products
CVE-2021-44228
https://nvd.nist.gov/vuln/detail/CVE-2021-44228
There is no impact due to the Log4j vulnerability on Brekeke products as all Brekeke products that have been released up till this time (December 2021) uses version 1.x.
We confirmed that the Tomcat that is installed with our installer program had not been affected by this vulnerability. For details, please visit the Apache Tomcat website (https://tomcat.apache.org/).
CVE-2019-17571
https://nvd.nist.gov/vuln/detail/CVE-2019-17571
Brekeke PBX uses ServerSocket class; however, there is no effect from this vulnerability as the program only listens to the loopback IP address.