{"id":41724,"date":"2024-01-23T15:47:57","date_gmt":"2024-01-23T14:47:57","guid":{"rendered":"https:\/\/www.wallix.com\/unterstuetzung-und-dienstleistungen\/warnungen-und-hinweise\/"},"modified":"2026-07-17T16:08:04","modified_gmt":"2026-07-17T15:08:04","slug":"warnungen-und-hinweise","status":"publish","type":"page","link":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/","title":{"rendered":"Warnungen und Hinweise"},"content":{"rendered":"\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-m193yzf3-48deca1036671846658f17def99dedc9\">\n#top .av-special-heading.av-m193yzf3-48deca1036671846658f17def99dedc9{\npadding-bottom:10px;\n}\nbody .av-special-heading.av-m193yzf3-48deca1036671846658f17def99dedc9 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n.av-special-heading.av-m193yzf3-48deca1036671846658f17def99dedc9 .av-subheading{\nfont-size:15px;\n}\n<\/style>\n<div  class='av-special-heading av-m193yzf3-48deca1036671846658f17def99dedc9 av-special-heading-h1  avia-builder-el-0  el_before_av_section  avia-builder-el-no-sibling '><h1 class='av-special-heading-tag '  itemprop=\"headline\"  >Service-Warnungen<\/h1><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div>\n<\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-av_section-084070c6bfcb5f452bb0bcff0db88a95\">\n.avia-section.av-av_section-084070c6bfcb5f452bb0bcff0db88a95{\nbackground-color:#ffffff;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_1'  class='avia-section av-av_section-084070c6bfcb5f452bb0bcff0db88a95 main_color avia-section-default avia-no-border-styling  avia-builder-el-1  el_after_av_heading  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c\">\n#top .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-2  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >JULY 2026<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>WSA-2026-07-0002 Unauthenticated Authentication Bypass in the SAML Service Provider &#8211; Access Manager<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div>\n<section  class='av_textblock_section av-av_textblock-564067357eb74c20cdd60b282c9b50bd '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><h1>2026-07-20- Unauthenticated Authentication Bypass in the SAML Service Provider &#8211; Access Manager<\/h1>\n<p><strong>Release Date:<\/strong>\u00a020 Jul 2026<\/p>\n<p><strong>Last Updated:<\/strong>\u00a020 Jul 2026<\/p>\n<p><strong>Identifiers:<\/strong>\u00a0WSA-2026-07-0002<\/p>\n<p><strong>Severity: <\/strong>HIGH- CVSS 4.0 Base 8.7 &#8211; CVSS:4.0\/AV:N\/AC:L\/AT:N\/PR:L\/UI:N\/VC:H\/VI:H\/VA:L\/SC:L\/SI:L\/SA:N<\/p>\n<h2>1. Executive Summary<\/h2>\n<p>\u26a0\ufe0f\u00a0<strong>This vulnerability affects any Access Manager with a SAML federation configured.<\/strong>\u00a0 Depending on the identity provider configuration, it may require no authentication and no user interaction.<\/p>\n<p>A high-severity vulnerability has been identified in the SAML Service Provider of the WALLIX Access Manager portal. A remote attacker with network access to the portal can obtain an authenticated administrator session without valid credentials.<\/p>\n<p>Because the Access Manager brokers access to a fleet of Bastions, an administrator session can reach the <strong>targets and privileged credentials the portal is configured to broker<\/strong> &#8211; i.e. the capabilities of a malicious Access Manager administrator. It does <strong>not<\/strong> grant administration of the Bastions themselves. We strongly urge affected customers to upgrade promptly and to review affected portals for signs of misuse. A security patch is available.<\/p>\n<p>? <strong>Coordinated public disclosure &#8211; act before September. <\/strong><\/p>\n<p>The independent security researchers who reported these vulnerabilities intend to publish full technical details in <strong>September 2026<\/strong> Once released, information useful to attackers will be in the public domain. Apply the fixes as soon as they are available and well ahead of the September disclosure.<\/p>\n<p><strong>Do not wait.<\/strong><\/p>\n<h2>2. Affected Products &amp; Scope<\/h2>\n<table>\n<tbody>\n<tr>\n<td><strong>Product<\/strong><\/td>\n<td><strong>Impacted Versions<\/strong><\/td>\n<td><strong>Status<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Access Manager<\/td>\n<td><strong>All versions with a SAML federation configured<\/strong><\/td>\n<td><strong>Vulnerable<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Access Manager<\/td>\n<td>Instances with\u00a0<strong>no SAML federation<\/strong>\u00a0configured<\/td>\n<td><strong>Not affected (via this vector)<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Access Manager<\/td>\n<td>5.1.10, 5.2.7, 6.0.4 and higher<\/td>\n<td><strong>Patched<\/strong><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>? The defect is present in every reviewed version and no remediation commit exists as of\u00a05.1.9, 5.2.6 or 6.0.3.<\/p>\n<h3>? Risk Assessment<\/h3>\n<p>Exploitation requires network access to the portal&#8217;s SAML Assertion Consumer Service (ACS), exposed by default on 443. The attack surface is enabled as soon as at least one SAML federation domain exists on the portal \u2014 a common, documented enterprise deployment.<\/p>\n<p>Depending on your identity provider configuration, exploitation may require no authentication at all, or the ability to observe one legitimate SSO login. In either case the result is a privileged, unauthenticated authentication bypass.<\/p>\n<p>Hardened SAML settings do not mitigate this. Signature verification and IdP certificate pinning are performed and behave correctly; the vulnerability lies elsewhere in the validation flow.<\/p>\n<h2>3. Vulnerability Details<\/h2>\n<p><strong>Type:<\/strong>\u00a0CWE-347 (Improper Verification of Cryptographic Signature) ; CWE-290 (Authentication Bypass by Spoofing).<\/p>\n<p><strong>Description:<\/strong>\u00a0A flaw in the portal&#8217;s SAML response validation allows a remote attacker to have a forged SAML response accepted as valid and to be logged in under an attacker-chosen identity and privilege level, including the highest-privileged profile<\/p>\n<p>Technical exploitation details, indicators of compromise, and detection guidance are provided to customers in a dedicated, access-controlled Knowledge Base article ( WSA-2026-07-0002 &#8211; Unauthenticated Authentication Bypass in the SAML Service Provider &#8211; Access Manager), available through the support portal. They are intentionally withheld from this public advisory to protect customers until patch adoption is sufficiently widespread.<\/p>\n<h2>4. Detection<\/h2>\n<p>Unlike a silent credential bypass, this attack leaves traces in the portal application logs and in the front-end access logs. Log review is therefore meaningful.<\/p>\n<p>Precise indicators of compromise and log-review guidance are provided to customers in WSA-2026-07-0002 via the support portal.<\/p>\n<h2>5. Resolution &amp; Action Plan<\/h2>\n<h3>\u2705 Recommended Action: Apply the Security Patch<\/h3>\n<p>Upgrade to WALLIX Access Manager 5.1.10, 5.2.7, 6.0.4 or higher.\u00a0<strong>This is the only complete remediation.<\/strong><\/p>\n<p>The WALLIX ONE REMOTE ACCESS SaaS environments are already up to date.<\/p>\n<p>The WALLIX ONE PAM SaaS environments are currently being updated by WALLIX, in coordination with our customers<\/p>\n<p>After patching, and given that a session obtained through this flaw carries full administrative rights, we strongly recommend:<\/p>\n<ul>\n<li><strong>Audit accounts and configuration<\/strong>for unexpected administrators (federated or local) and unauthorized changes.<\/li>\n<li><strong>Rotate Access Manager administrator and API credentials.<\/strong><\/li>\n<li>Because the portal fronts the managed Bastions,\u00a0<strong>review privileged access and, where warranted, rotate secrets<\/strong>on Bastions reachable from a compromised portal.<\/li>\n<li>Remove any unrecognized JIT-provisioned federated users and invalidate their sessions.<\/li>\n<\/ul>\n<h3>\u26a0\ufe0f Interim Mitigations (until patching)<\/h3>\n<p>The SAML surface can be partially fenced:<\/p>\n<ul>\n<li><strong>Reduce exposure:<\/strong>disable or remove SAML federation domains that are not in active use; limit which organizations expose a SAML login.<\/li>\n<li><strong>Reduce exposure: <\/strong>Remove or rename profile of type Administrator on organizations which need SAML<\/li>\n<\/ul>\n<p>These reduce risk but do not fully close the flaw.\u00a0<strong>Upgrading remains the priority.<\/strong><\/p>\n<h2>Credits<\/h2>\n<p>This vulnerability was discovered and responsibly reported by <strong>Fabien J. (SNS-Security)<\/strong>. We thank SNS-Security for their coordinated disclosure.<\/p>\n<h2>Contact &amp; Support<\/h2>\n<p>For assistance with the mitigation steps, please contact our support by opening a ticket on the support portal.<\/p>\n<\/div><\/section>\n\n<p><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-av_section-8a088b55778457f770d97b418c17e050\">\n.avia-section.av-av_section-8a088b55778457f770d97b418c17e050{\nbackground-color:#e5e5e5;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_2'  class='avia-section av-av_section-8a088b55778457f770d97b418c17e050 main_color avia-section-default avia-no-border-styling  avia-builder-el-4  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c\">\n#top .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-av_heading-931ad82c3dd3fbacbce97a4dbf42eb7c av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-5  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >JULY 2026<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>WSA-2026-07-0001 Unauthenticated Privilege Escalation in REST API &#8211; WALLIX Bastion<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div>\n<section  class='av_textblock_section av-av_textblock-564067357eb74c20cdd60b282c9b50bd '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><h1>2026-07-20 &#8211; Unauthenticated Privilege Escalation in REST API &#8211; Bastion<\/h1>\n<h1>[SECURITY ADVISORY] Unauthenticated Privilege Escalation in REST API &#8211; WALLIX Bastion<\/h1>\n<p><strong>Release Date:<\/strong> 20 Jul 2026<\/p>\n<p><strong>Last Updated:<\/strong> 20 Jul 2026<\/p>\n<p><strong>Identifiers:<\/strong> WSA-2026-07-0001<\/p>\n<p><strong>Severity:<\/strong> CRITICAL &#8211; CVSS 4.0 Base 10.0 &#8211; CVSS:4.0\/AV:N\/AC:L\/AT:N\/PR:N\/UI:N\/VC:H\/VI:H\/VA:H\/SC:H\/SI:H\/SA:H<\/p>\n<h2>1. Executive Summary<\/h2>\n<p>This vulnerability affects any operational Bastion 12.3 and 12.4.0 in any configuration.<\/p>\n<p>It requires no authentication, no user interaction, and no special settings.<\/p>\n<p>A critical vulnerability has been identified in the WALLIX Bastion REST API. A remote, unauthenticated attacker with network access to the API endpoint can obtain full administrative privileges on the appliance.<\/p>\n<p>Successful exploitation grants complete control over the Bastion, including its configuration, its vault of privileged credentials, and its session recordings. <strong>We strongly urge all affected customers to upgrade without delay<\/strong> and to treat affected appliances as potentially compromised. A security patch is available.<\/p>\n<p>? <strong>Coordinated public disclosure &#8211; act before September. <\/strong><\/p>\n<p>The independent security researchers who reported these vulnerabilities intend to publish full technical details in <strong>September 2026<\/strong> Once released, information useful to attackers will be in the public domain. Apply the fixes as soon as they are available and well ahead of the September disclosure.<\/p>\n<p><strong>Do not wait.<\/strong><\/p>\n<h2>2. Affected Products &amp; Scope<\/h2>\n<table>\n<tbody>\n<tr>\n<td><strong>Product<\/strong><\/td>\n<td><strong>Impacted Versions<\/strong><\/td>\n<td><strong>Status<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Bastion<\/td>\n<td>All versions <strong>12.0.x<\/strong><\/td>\n<td><strong>Not affected<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Bastion<\/td>\n<td>All versions\u00a0<strong>prior to 12.3.0<\/strong><\/td>\n<td><strong>Not affected<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Bastion<\/td>\n<td>All versions from<strong> 12.3.0 <\/strong>to<strong> 12.3.6 <\/strong><\/td>\n<td><strong>Vulnerable<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Bastion<\/td>\n<td>Version <strong>12.4.0<\/strong><\/td>\n<td><strong>Vulnerable<\/strong><\/td>\n<\/tr>\n<tr>\n<td>WALLIX Bastion<\/td>\n<td>Version <strong>12.3.7<\/strong><br \/>\nVersion <strong>12.4.1<\/strong> and higher<\/td>\n<td><strong>Patched<\/strong><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>The affected code path was introduced in the 12.3 branch. Versions below 12.3 are not affected.<\/p>\n<h3>? Risk Assessment<\/h3>\n<p>Exploitation requires only network access to the REST API endpoint (typically exposed on HTTPS \/ 443) on an operational appliance. No credentials, valid session, or user interaction are needed. Any Bastion actively in service should be considered exposed.<\/p>\n<h2>3. Vulnerability Details<\/h2>\n<p><strong>Type:<\/strong> CWE-290 (Authentication Bypass by Spoofing) \/ CWE-287 (Improper Authentication).<\/p>\n<p><strong>Description:<\/strong> Under certain conditions the REST API authentication layer can be induced to grant a privileged administrative session without valid credentials.<\/p>\n<p><strong>Access:<\/strong> Remote, network access to the API endpoint. <strong>No authentication required.<\/strong><\/p>\n<p>Technical exploitation details are intentionally withheld to protect customers until patch adoption is sufficiently widespread.<\/p>\n<h2>4. Detection &amp; Indicators of Compromise<\/h2>\n<p><strong>State-changing actions are logged.<\/strong> Operations that modify state (creating\/editing users, changing configuration) <strong>are<\/strong> recorded in \/var\/log\/wabaudit.log. Entries follow this format:<\/p>\n<p>wabengine: [wabaudit] action=&#8220;&#8220; type=&#8220;<object width=\"300\" height=\"150\">&#8220; object=&#8220;<name>&#8220; user=&#8220;<actor>&#8220; client_ip=&#8220;<ip>&#8220; infos=&#8220;<changed fields=\"\">&#8222;These informations are also sent to a SIEM system if configured.<strong>Primary indicator \u2014 administrator creation performed by the internal service account identity.<\/strong> A session obtained through this vulnerability acts as an internal service account principal from the loopback address. Any wabaudit.log entry such as the following is highly suspicious, because a legitimate administrator action is never recorded this way:Jul\u00a0 4 14:12:07 bastion wabengine: [wabaudit] action=&#8220;add&#8220; type=&#8220;XXX&#8220; object=&#8220;XXX&#8220; user=&#8220;XXXX&#8220; client_ip=&#8220;127.0.0.1&#8243; infos=&#8220;cn [&#8218;backdoor&#8216;], profile [&#8218;product_administrator&#8216;], userPassword [&#8218;********&#8216;], userauths [&#8218;local_password&#8216; ]&#8220;Look in particular for:<\/p>\n<ul>\n<li>client_ip=&#8220;127.0.0.1&#8243;<strong>\u00a0on any state-changing action<\/strong>\u00a0(action=&#8220;add&#8220;,\u00a0&#8222;edit&#8220;,\u00a0&#8222;delete&#8220;) \u2014 especially\u00a0type=&#8220;User&#8220;\u00a0creating a\u00a0product_administrator. This actor\/IP pair for administrative changes is the strongest indicator of exploitation.<\/li>\n<li>Creation of administrator accounts you did not provision, or configuration\/authorization changes with no matching interactive administrator login.<\/li>\n<\/ul>\n<p><strong>Review scope:<\/strong> examine \/var\/log\/wabaudit.log (and rotated archives) \u2014 and, for credential-checkout activity, \/var\/log\/vault-activity.log \u2014 across the entire window during which an affected version was network-reachable. Log review can confirm compromise but can never rule it out.<strong>Exploitation can be entirely invisible.<\/strong>Control Release of first version affected is 10 Feb 2026 , if you don\u00b4t have a logs retention (either on Bastion or in SIEM) before this date or installation of vulnerable version, you will not be able to assert if a exploitation was made.<strong>Absence of evidence must not be interpreted as absence of compromise<\/strong>. Treat any affected, network-reachable appliance as potentially fully compromised, including all vault secrets.<\/p>\n<h2>5. Resolution &amp; Action Plan<\/h2>\n<h3>Recommended Action: Apply the Security Patch<\/h3>\n<p>Upgrade to WALLIX Bastion <strong>12.4.1 <\/strong>or higher. <strong>This is the only effective remediation.<\/strong>The WOPAM SaaS environments are currently being updated by WALLIX, in coordination with our customers.Because exploitation may leave no trace (see \u00a74), after patching we strongly recommend, <strong>if you can not assert that no exploitation was made<\/strong>:<\/p>\n<ul>\n<li><strong>Rotate all secrets held in the vault<\/strong>(target account passwords, SSH keys, API keys). Assume every secret the appliance stored may have been read.<\/li>\n<li><strong>Rotate Bastion administrator and API credentials.<\/strong><\/li>\n<li><strong>Audit accounts and configuration<\/strong>for unexpected administrators or unauthorized changes, using the indicators in \u00a74.<\/li>\n<\/ul>\n<h2>Credits<\/h2>\n<p>This vulnerability was discovered and responsibly reported by <strong>Fabien J. (SNS-Security)<\/strong>. We thank SNS-Security for their coordinated disclosure.<\/p>\n<h2>Contact &amp; Support<\/h2>\n<p>For assistance with the mitigation steps, please contact our support by opening a ticket on the support portal.<\/p>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-lrz599mq-86b1025bf55bb7cc46bcc7daddc0142b\">\n.avia-section.av-lrz599mq-86b1025bf55bb7cc46bcc7daddc0142b{\nbackground-color:#e5e5e5;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_3'  class='avia-section av-lrz599mq-86b1025bf55bb7cc46bcc7daddc0142b main_color avia-section-default avia-no-border-styling  avia-builder-el-7  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-lpmr3htm-cba01dfe88992266088306e22ff39988\">\n#top .av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-lpmr3htm-cba01dfe88992266088306e22ff39988 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-lpmr3htm-cba01dfe88992266088306e22ff39988 av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-8  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >JULI 2025<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>CVE WSA-2025-07-001 Leck in den Zugangsdaten von Web-Zielen<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-lmrwphoe-9201705ebd7b14cf1bfb53a54de8c365 '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><p><strong>Titel: CVE WSA-2025-07-001 Leck in den Zugangsdaten von Web-Zielen<\/strong><strong> Datum: Juli 2025<\/strong><strong> Zusammenfassung<\/strong><strong> Eine hochgradig gef\u00e4hrliche Sicherheitsl\u00fccke (CVSS Base Score 7.7) wurde<\/strong> in WALLIX Web Session Manager 4.0.7 (derzeit in Controlled Release) <strong> entdeckt<\/strong>.<strong>Details zur Schwachstelle<\/strong><strong>&#8211; Produkt:<\/strong> WALLIX Web Session Manager<strong>&#8211; Betroffene Version:<\/strong> 4.0.7<strong>&#8211; Funktionsweise:<\/strong> Web-Sitzungen mit automatischer Injektion von Anmeldeinformationen<strong>&#8211; Details zur Sicherheitsanf\u00e4lligkeit:<\/strong> Wenn ein Benutzer \u00fcber den Credentials Injection Workflow auf eine Webanwendung zugreift, werden die Anmeldeinformationen der Anwendung m\u00f6glicherweise im Browser offengelegt und k\u00f6nnen \u00fcber Browser-Entwicklerwerkzeuge abgerufen werden.<strong>&#8211; Auswirkungen:<\/strong> Sensible Anmeldeinformationen k\u00f6nnen durchsickern und f\u00fcr unkontrollierten Zugriff auf Ziele verwendet werden- <strong>Schweregrad:<\/strong>\u25e6 CVSS Basic: <strong>7.7<\/strong> (\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:H\/I:N\/A:N)\u25e6 CVSS Environmental: <strong>9.4<\/strong> (\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:H\/I:N\/A:N\/E:H\/RL:O\/RC:C\/CR:H)<strong>Fix-Versionen<\/strong>WALLIX Web Session Manager Hotfix Version 4.0.9 wird Anfang August 2025 verf\u00fcgbar sein.<strong>Wie kann ich \u00fcberpr\u00fcfen, ob ich diese Funktion nutze?<\/strong>1 \u00dcberpr\u00fcfen Sie, ob Sie einen WALLIX Web Session Manager 4.0.7 eingerichtet haben =&gt; <em>Verbinden Sie sich als Administrator mit der L\u00f6sung: Die Versionsnummer wird auf der Landing Page angezeigt.<\/em>2 \u00dcberpr\u00fcfen Sie, ob Sie Webanwendungsziele konfiguriert haben:1 Anlegen einer Webanwendung =&gt; <em>siehe WALLIX Bastion 12.2 Handbuch zur funktionalen Administration &#8222;10.4. Hinzuf\u00fcgen einer Webanwendung&#8220; Abschnitt<\/em>2 Anlegen eines Webanwendungskontos =&gt; <em>siehe WALLIX Bastion 12.2 funktionales Administrationshandbuch &#8222;12.1 Hinzuf\u00fcgen von Zielkonten&#8220; Abschnitt<\/em>3 Webanwendungskonto in einer Zielgruppe =&gt; <em> siehe WALLIX Bastion 12.2 funktionales Administrationshandbuch &#8222;12.2 Hinzuf\u00fcgen von Zielgruppen&#8220; Abschnitt<\/em>4 Webverbindungsrichtlinie mit Injection Credential als Authentifizierungsmethode =&gt; <em>lesen Sie bitte im WALLIX Bastion 12.2 Handbuch zur funktionalen Verwaltung &#8222;11.3.1. Richtlinie f\u00fcr die Verbindung von Webanwendungen&#8220; Abschnitt<\/em><strong>Abhilfe<\/strong>WALLIX empfiehlt, den Injektions-Zugangsdaten-Workflow mit Websitzungen zu deaktivieren und sich auf die manuelle Authentifizierung (interaktive Anmeldung) zu verlassen.<\/p>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-5m123x-a4736b45fe74d9a3265e59c3af4fd776\">\n.avia-section.av-5m123x-a4736b45fe74d9a3265e59c3af4fd776{\nbackground-color:#ffffff;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_4'  class='avia-section av-5m123x-a4736b45fe74d9a3265e59c3af4fd776 main_color avia-section-default avia-no-border-styling  avia-builder-el-10  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee\">\n#top .av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-3j2srh-6b1f055cdc8eb8fb0b16a93372713cee av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-11  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >M\u00c4RZ 2025<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>CVE XXX WSA-202503-1 AD Discovery: Die Anmeldeinformationen des Dienstkontos, das in der externen Authentifizierung konfiguriert ist, werden zum Abrufen von Daten aus AD verwendet und die abgerufenen Daten werden im Klartext gesendet.<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-2sf0al-810e05971651590eb81e3c11725c9a66 '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><div id=\"UniqueMessageBody\" class=\"XbIp4 jmmB7 GNqVo allowTextSelection OuGoX\" tabindex=\"-1\" role=\"document\" aria-label=\"Corps du message\">\n<div>\n<div>\n<div dir=\"ltr\">\n<div lang=\"fr\">\n<div>\n<div class=\"R1UVb\"><strong>CVE XXX WSA-202503-1 AD Discovery:<\/strong> Die Anmeldeinformationen des Dienstkontos, das in der externen Authentifizierung konfiguriert ist, werden zum Abrufen von Daten aus AD verwendet und die abgerufenen Daten werden im Klartext gesendet.Es wurde eine hohe Sicherheitsl\u00fccke entdeckt (Bewertung: CVSS 8.9).<strong>Betroffene Produkte<\/strong><strong>&#8211; Von 10.0.0 bis 10.0.10 enthielt WALLIX Bastion<\/strong><strong>&#8211; Von 12.0.0 bis 12.0.8 enthielt WALLIX Bastion<\/strong><strong>&#8211; Alle nicht mehr unterst\u00fctzten Versionen sind potenziell betroffen<\/strong><strong>Zusammenfassung<\/strong><strong>&#8211; Produkt:<\/strong> WALLIX Bastion &#8211; Entdeckungsmodul<strong>&#8211; Funktionsweise:<\/strong> Asset-Ermittlung \u00fcber eine verschl\u00fcsselte, durch GSS-API\/STARTTLS authentifizierte Verbindung zu einem Active Directory<strong>&#8211; Details zur Schwachstelle:<\/strong> WALLIX Bastion sendet w\u00e4hrend eines Scans Informationen \u00fcber Ger\u00e4te und deren Konten mit einem Active Directory \u00fcber GSS-API oder STARTTLS. Andere Funktionen, die auf die Integration von Active Directory angewiesen sind, sind nicht betroffen.<strong>&#8211; Auswirkungen:<\/strong> Die Anmeldeinformationen f\u00fcr das Dienstkonto k\u00f6nnen durchsickern und sensible Daten, die aus dem konfigurierten Active Directory abgerufen werden, sind nicht verschl\u00fcsselt.<strong>&#8211; Feste Software<\/strong><\/p>\n<p style=\"padding-left: 40px;\">&#8211; WALLIX Bastion 12.0.9 verf\u00fcgbar 2025\/03\/26<\/p>\n<p style=\"padding-left: 40px;\">&#8211; WALLIX Bastion 10 Patch verf\u00fcgbar 2025\/03\/28<\/p>\n<p>Das folgende WALLIX Security Bulletin enth\u00e4lt Informationen \u00fcber die Sicherheitsl\u00fccke, Empfehlungen und Umgehungsm\u00f6glichkeiten: WSA-202503-1 https:\/\/support.wallix.com\/hc\/en-us\/articles\/25925255587613-WSA-202503-1<strong>CVE XXX WSA-202503-2 WIN RM<\/strong>AD-Erkennung: AD Discovery: Die Anmeldeinformationen des Dienstkontos, das w\u00e4hrend eines Scans konfiguriert und zum Abrufen von Daten aus AD verwendet wird, und die abgerufenen Daten werden im Klartext gesendet.Es wurde eine hohe Sicherheitsl\u00fccke entdeckt (Bewertung: CVSS 8.9).<strong>Betroffene Produkte<\/strong>&#8211; Von 10.0.0 bis 10.0.10 enthielt WALLIX Bastion- Von 12.0.0 bis 12.0.8 enthielt WALLIX Bastion- Alle nicht mehr unterst\u00fctzten Versionen sind potenziell betroffen<strong>Zusammenfassung<\/strong><strong>&#8211; Produkt:<\/strong> WALLIX Bastion &#8211; Entdeckungsmodul<strong>&#8211; Funktionsweise:<\/strong> Asset-Erkennung mit aktivierter Kontenerkennung<strong>&#8211; Details zur Schwachstelle:<\/strong> WALLIX Bastion sendet w\u00e4hrend eines Scans Informationen \u00fcber Ger\u00e4te und deren Konten mit einem Active Directory. Andere Funktionen, die auf die Integration von Active Directory angewiesen sind, sind davon nicht betroffen.<strong>&#8211; Auswirkungen:<\/strong> Die Anmeldedaten f\u00fcr das Dienstkonto k\u00f6nnen durchsickern.<strong>&#8211; Feste Software<\/strong><\/p>\n<p style=\"padding-left: 40px;\">&#8211; WALLIX Bastion 12.0.9 verf\u00fcgbar 2025\/03\/26<\/p>\n<p style=\"padding-left: 40px;\">&#8211; WALLIX Bastion 10 Patch verf\u00fcgbar 2025\/03\/28<\/p>\n<p>Das folgende WALLIX Security Bulletin enth\u00e4lt Informationen \u00fcber die Sicherheitsl\u00fccke, Empfehlungen und Umgehungsm\u00f6glichkeiten:WSA-202503-2 https:\/\/support.wallix.com\/hc\/en-us\/articles\/25925620269213-WSA-202503-2<strong>Betrieb und \u00f6ffentliche Bekanntmachungen<\/strong>WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde. Es wird jedoch empfohlen, auf abnormale Aktivit\u00e4ten auf WALLIX Bastion und den damit verbundenen Active Directories zu achten.Wenn Sie Fragen haben oder weitere Informationen w\u00fcnschen, wenden Sie sich bitte an das Support-Team unter https:\/\/support.wallix.com.<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-5g2aml-3d738db15a97eb851f16938c4b25f6d3\">\n.avia-section.av-5g2aml-3d738db15a97eb851f16938c4b25f6d3{\nbackground-color:#e5e5e5;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_5'  class='avia-section av-5g2aml-3d738db15a97eb851f16938c4b25f6d3 main_color avia-section-default avia-no-border-styling  avia-builder-el-13  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852\">\n#top .av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-485sh9-d84c75ddaddd3d99fd8b105a4ae3b852 av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-14  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >NOVEMBER 2024<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>CVE-2024-XXXXX &#8211; Umgehung des deaktivierten\/abgelaufenen Benutzerkontos<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-2b280d-ac350d0b5bbc4d67702826a4109c2c73 '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><div id=\"UniqueMessageBody\" class=\"XbIp4 jmmB7 GNqVo allowTextSelection OuGoX\" tabindex=\"-1\" role=\"document\" aria-label=\"Corps du message\">\n<div>\n<div>\n<div dir=\"ltr\">\n<div lang=\"fr\">\n<div>\n<div class=\"R1UVb\">\n<div class=\"qF8_5\">\n<div data-olk-copy-source=\"MessageBody\">Eine KRITISCHE Sicherheitsl\u00fccke (Bewertung 9.1: CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:H\/I:L\/A:L) wurde in <b>WALLIX Bastion<\/b> und <b>WALLIX Access Manager<\/b> entdeckt.Eine CVE-Nummer wurde angefordert und wir warten derzeit auf ihre Zuweisung.<\/div>\n<h3><b>Zusammenfassung<\/b><\/h3>\n<div><\/div>\n<div><\/div>\n<div class=\"R1UVb\"><\/div>\n<div class=\"R1UVb\">\n<table id=\"x_x_table_0\" data-editing-info=\"{\" data-layout=\"default\" data-table-width=\"1606\" data-number-column=\"false\" data-testid=\"renderer-table\">\n<tbody>\n<tr>\n<td>\n<div><b>Produkt<\/b><\/div>\n<\/td>\n<td>\n<div><b>Merkmal<\/b><\/div>\n<\/td>\n<td>\n<div><b>Details zur Schwachstelle<\/b><\/div>\n<\/td>\n<td>\n<div><b>Auswirkungen<\/b><\/div>\n<\/td>\n<td>\n<div><b>Wie kann ich \u00fcberpr\u00fcfen, ob ich diese Funktion nutze?<\/b><\/div>\n<\/td>\n<\/tr>\n<tr>\n<td data-colwidth=\"205\">\n<div>WALLIX Bastion<\/div>\n<\/td>\n<td data-colwidth=\"289\">\n<div>Benutzerauthentifizierung mit einem in LDAP oder Active Directory gespeicherten SSH-Schl\u00fcssel<\/div>\n<\/td>\n<td data-colwidth=\"341\">\n<div><b>WALLIX Bastion<\/b> \u00fcberpr\u00fcft nicht die Flaggen Abgelaufen oder Deaktiviert.<\/div>\n<\/td>\n<td data-colwidth=\"363\">\n<div>Benutzer k\u00f6nnen sich an der WALLIX Bastion authentifizieren und auf ihre SSH-Ziele zugreifen<\/div>\n<\/td>\n<td data-colwidth=\"404\">\n<div>Unter <i>Konfiguration &gt; Authentifizierungsdom\u00e4nen &gt; Active Directory <\/i>oder<i> LDAP <\/i>wird<i> das Attribut des \u00f6ffentlichen SSH-Schl\u00fcssels <\/i>definiert<\/div>\n<\/td>\n<\/tr>\n<tr>\n<td data-colwidth=\"205\">\n<div>WALLIX Bastion<\/div>\n<\/td>\n<td data-colwidth=\"289\">\n<div>Benutzerauthentifizierung mit X.509-Zertifikat, das in LDAP oder Active Directory gespeichert ist<\/div>\n<\/td>\n<td data-colwidth=\"341\">\n<div><b>WALLIX Bastion<\/b> \u00fcberpr\u00fcft nicht die Flaggen Abgelaufen oder Deaktiviert.<\/div>\n<\/td>\n<td data-colwidth=\"363\">\n<div>Benutzer k\u00f6nnen sich auf der WALLIX Bastion GUI authentifizieren und auf ihre Ziele zugreifen<\/div>\n<\/td>\n<td data-colwidth=\"404\">\n<div>Beide Bedingungen unten sind erf\u00fcllt:<\/div>\n<ul data-indent-level=\"1\">\n<li>\n<div>In <i>Konfiguration &gt; Konfigurationsoptionen<\/i> &gt; X.509-Konfiguration <i>ist X.509-Authentifizierung aktivieren<\/i> markiert, und<\/div>\n<\/li>\n<li>\n<div>Unter <i>Konfiguration &gt; Authentifizierungsdom\u00e4nen &gt; Active Directory <\/i>oder<i> LDAP<\/i> ist die Option <i>X509-Authentifizierung aktivieren <\/i>markiert.<\/div>\n<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td data-colwidth=\"205\">\n<div>WALLIX Access Manager<\/div>\n<\/td>\n<td data-colwidth=\"289\">\n<div>Benutzerauthentifizierung mit einem in Active Directory gespeicherten X.509-Zertifikat<\/div>\n<\/td>\n<td data-colwidth=\"341\">\n<div><b>WALLIX Access Manager <\/b>pr\u00fcft keine Abgelaufen-Flags.<\/div>\n<\/td>\n<td data-colwidth=\"363\">\n<div>Benutzer k\u00f6nnen sich an der WALLIX Access Manager GUI authentifizieren und auf ihre Ziele zugreifen<\/div>\n<\/td>\n<td data-colwidth=\"404\">\n<div>In der globalen Organisation, <i>Konfiguration <\/i>&gt; <i>Dom\u00e4nen <\/i>&gt; LDAP-Dom\u00e4ne ausw\u00e4hlen, <i>Erlauben Sie X509 Cert. Authentifizierung<\/i> gepr\u00fcft wird<\/div>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n<div>Hinweis: WALLIX Access Manager unterst\u00fctzt keine Benutzerauthentifizierung mit einem in LDAP gespeicherten X.509-Zertifikat.<\/div>\n<div>Hinweis: WALLIX Access Manager erm\u00f6glicht keine Benutzerauthentifizierung mit SSH-Schl\u00fcssel.<\/div>\n<div>Hinweis: Die Anmeldedaten des Benutzers (privater SSH-Schl\u00fcssel oder X.509-Schl\u00fcssel, der mit dem Zertifikat verbunden ist) m\u00fcssen g\u00fcltig sein.<\/div>\n<div>WALLIX empfiehlt, die ver\u00f6ffentlichten Korrekturen sofort anzuwenden oder vorher die unten beschriebenen Abhilfema\u00dfnahmen anzuwenden.<\/div>\n<div><\/div>\n<div><\/div>\n<h3><b>Betroffene Produkte<\/b><\/h3>\n<div><\/div>\n<\/div>\n<div><\/div>\n<div class=\"qF8_5\">\n<div><b>Bastion:<\/b><\/div>\n<ul data-indent-level=\"1\">\n<li>\n<div>Alle WALLIX Bastion 12.0 Versionen bis zu 12.0.3 enthalten<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Bastion 11.0<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Bastion 10.1, 10.2, 10.3, 10.4<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Bastion 10.0 bis 10.0.9 enthalten<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Bastion 9.0, 9.1<\/div>\n<\/li>\n<li>\n<div>Alle fr\u00fcheren WALLIX Bastion k\u00f6nnen betroffen sein<\/div>\n<\/li>\n<\/ul>\n<div><b>Access Manager:<\/b><\/div>\n<ul data-indent-level=\"1\">\n<li>\n<div>WALLIX Access Manager 5.1.0<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Access Manager 5.0 Versionen<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Access Manager 4.4 Versionen<\/div>\n<\/li>\n<li>\n<div>Alle WALLIX Access Manager 4.0 Versionen bis zu 4.0.7 enthalten<\/div>\n<\/li>\n<li>\n<div>Alle fr\u00fcheren WALLIX Access Manager k\u00f6nnen betroffen sein<\/div>\n<\/li>\n<\/ul>\n<h3><b>Indikator f\u00fcr Kompromiss<\/b><\/h3>\n<div><\/div>\n<div><\/div>\n<div>\u00dcberpr\u00fcfen Sie das Authentifizierungsprotokoll auf WALLIX Bastion und WALLIX Access Manager, um sicherzustellen, dass keine deaktivierten oder abgelaufenen Konten verwendet wurden.<\/div>\n<div><\/div>\n<div><\/div>\n<h3><b>Umgehungen<\/b><\/h3>\n<div><\/div>\n<div><\/div>\n<div><\/div>\n<div><b>Abgelaufenes und deaktiviertes Konto:<\/b><\/div>\n<div><\/div>\n<div>F\u00fcr WALLIX Bastion und WALLIX Access Manager entfernen Sie den SSH-Schl\u00fcssel oder den Zertifikathash, der im Active Directory oder LDAP-Benutzerkonto gespeichert ist.<\/div>\n<div>X.509-Zertifikate k\u00f6nnen auch widerrufen werden, wenn CRLs in WALLIX Bastion und WALLIX Access Manager richtig konfiguriert sind.<\/div>\n<div><\/div>\n<div><\/div>\n<div><\/div>\n<div><b>Nur deaktiviertes Konto<\/b>:<\/div>\n<div><\/div>\n<div><\/div>\n<div>Wenn Sie SSH-Schl\u00fcssel oder X.509-Zertifikate innerhalb von Active Directory nicht entfernen k\u00f6nnen:<\/div>\n<ul data-indent-level=\"1\">\n<li>\n<div>WALLIX Bastion, gehen Sie zu <i>Konfiguration &gt; Konfigurationsoptionen<\/i> &gt; <i>Global<\/i> &gt; (Erweiterte Optionen) &gt; <i>Ldap-Attribute <\/i>und f\u00fcgen Sie hinzu:<\/div>\n<ul data-indent-level=\"2\">\n<li>\n<div>&#8222;userAccountControl&#8220; f\u00fcr Active Directory<\/div>\n<\/li>\n<li>\n<div>&#8222;krbPasswordExpiration&#8220; f\u00fcr FreeIPA.<\/div>\n<\/li>\n<\/ul>\n<\/li>\n<li>\n<div>WALLIX Access Manager ist von dieser Sicherheitsl\u00fccke nicht betroffen<\/div>\n<\/li>\n<\/ul>\n<div><b>Feste Software<\/b><\/div>\n<ul data-indent-level=\"1\">\n<li>\n<div>WALLIX Bastion 12.0.4, jetzt verf\u00fcgbar https:\/\/updates.wallix.com\/bastion\/bastion-12.0.4.iso<\/div>\n<\/li>\n<li>\n<div>WALLIX Access Manager 5.1.1, jetzt verf\u00fcgbar https:\/\/updates.wallix.com\/accessmanager\/accessmanager-5.1.1.1.iso<\/div>\n<\/li>\n<li>\n<div>WALLIX Bastion 10.0.10, verf\u00fcgbar ab 22. November<\/div>\n<\/li>\n<li>\n<div>WALLIX Access Manager 4.0.8, verf\u00fcgbar ab 22. November<\/div>\n<\/li>\n<\/ul>\n<div><b>Ausbeutung und \u00f6ffentliche Bekanntmachungen<\/b><\/div>\n<div><\/div>\n<div>WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde.<\/div>\n<div>Es wird jedoch empfohlen, auf den WALLIX-Bastionen nach abnormalen Aktivit\u00e4ten zu suchen.<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-5ukex9-47e866328aa8315515063a863ded2438\">\n.avia-section.av-5ukex9-47e866328aa8315515063a863ded2438{\nbackground-color:#ffffff;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_6'  class='avia-section av-5ukex9-47e866328aa8315515063a863ded2438 main_color avia-section-default avia-no-border-styling  avia-builder-el-16  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd\">\n#top .av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-42mo9p-e3dfb6a9bd0c03942a80f7a8f7b4f2fd av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-17  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >DEZEMBER 2023 <\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>M\u00f6gliche Offenlegung sensibler Informationen CVE-2023-49961<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-2xq70d-e5e3fcb56d69531a18fbb3b1f73e2a14 '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><div id=\"UniqueMessageBody\" class=\"XbIp4 jmmB7 GNqVo allowTextSelection OuGoX\" tabindex=\"-1\" role=\"document\" aria-label=\"Corps du message\">\n<div>\n<div>\n<div dir=\"ltr\">\n<div lang=\"fr\">\n<div>\n<div class=\"R1UVb\">\n<div class=\"qF8_5\"><b>ZUSAMMENFASSUNG<\/b>In den WALLIX-Produkten wurde eine Sicherheitsl\u00fccke entdeckt, die es einem Angreifer erm\u00f6glichen k\u00f6nnte, auf sensible Informationen zuzugreifen. Der Angreifer k\u00f6nnte diese Schwachstelle ausnutzen, um sich unrechtm\u00e4\u00dfige Zugriffe zu verschaffen.WALLIX empfiehlt, die ver\u00f6ffentlichten Korrekturen sofort anzuwenden oder vorher die unten beschriebene Umgehungsl\u00f6sung anzuwenden.<b>Betroffene Produkte<\/b>Alle unterst\u00fctzten Versionen von WALLIX Bastion und Access Manager als Appliance.<b>Umgehungen<\/b>Im folgenden Artikel unserer Wissensdatenbank finden Sie eine Anleitung zur Schadensbegrenzung.<\/p>\n<ul data-editing-info=\"{\">\n<li>Access Manager als Appliance: <u>https:\/\/wallix.lightning.force.com\/lightning\/r\/Knowledge__kav\/ka0Sb00000007O5IAI\/view<\/u><\/li>\n<li>Bastion: <u>https:\/\/wallix.lightning.force.com\/lightning\/r\/Knowledge__kav\/ka0Sb00000005irIAA\/view<\/u><\/li>\n<\/ul>\n<p><b>Feste Software<\/b>Hotfixes und Patches sind in unserem Download-Portal verf\u00fcgbar:<\/p>\n<ul data-editing-info=\"{\">\n<li>\n<div>Bastion 9.0.9 : https:\/\/cloud.wallix.com\/index.php\/s\/DBkJWdtsPjW7BSn (SHA256: dc5e3fda310a94cd54835800718cc1ec02084a126f79c82dde465eff40d698a4 )<\/div>\n<\/li>\n<li>\n<div>Bastion 10.0.5 : <a id=\"OWAa1dfb947-0c43-31d0-d4fa-915b2f9d774b\" href=\"https:\/\/cloud.wallix.com\/index.php\/s\/PYjdncJSTaEBRSg\" target=\"_blank\" rel=\"noopener noreferrer\" data-linkindex=\"3\" data-loopstyle=\"linkonly\" data-auth=\"NotApplicable\">https:\/\/cloud.wallix.com\/index.php\/s\/PYjdncJSTaEBRSg<\/a> (SHA256: 65cdc9b49dfa2160a4a8489fd1c61cad1a48444dbb86cb4a9ac0f4ff527d1197 )<\/div>\n<\/li>\n<\/ul>\n<div><\/div>\n<p><b>Ausbeutung und \u00f6ffentliche Bekanntmachungen<\/b>WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde.Es wird jedoch empfohlen, auf den WALLIX Bastions und dem WALLIX Access Manager nach ungew\u00f6hnlichen Aktivit\u00e4ten zu suchen. Au\u00dferdem sollten Sie sicherstellen, dass die Firewall von Bastion und Access Manager aktiviert ist.<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-lyzpdp0i-17b106f359a0a6d9e56ceebb78ad7e69\">\n.avia-section.av-lyzpdp0i-17b106f359a0a6d9e56ceebb78ad7e69{\nbackground-color:#e5e5e5;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_7'  class='avia-section av-lyzpdp0i-17b106f359a0a6d9e56ceebb78ad7e69 main_color avia-section-default avia-no-border-styling  avia-builder-el-19  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d\">\n#top .av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-49tsz1-b07b5aecf21067ac32e1193a36b9d69d av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-20  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >FEBRUAR 2023 <\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>Berechtigungserweiterung bei Access Manager CVE-2023-23592<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-247y9p-abbdfa1fb1e9663efb6218344347f6fd '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><div id=\"UniqueMessageBody\" class=\"XbIp4 jmmB7 GNqVo allowTextSelection OuGoX\" tabindex=\"-1\" role=\"document\" aria-label=\"Corps du message\">\n<div>\n<div>\n<div dir=\"ltr\">\n<div lang=\"fr\">\n<div><b><span lang=\"en-US\">Februar 2023<\/span><\/b><b><span lang=\"en-US\">Access Manager Privilegienerweiterung <\/span><\/b><span lang=\"en-US\">CVE-2023-23592<\/span><b><span lang=\"en-US\">ZUSAMMENFASSUNG<\/span><\/b><span lang=\"en-US\">Im Produkt WALLIX Access Manager wurde eine Sicherheitsl\u00fccke entdeckt, die es einem Angreifer erm\u00f6glichen k\u00f6nnte, auf vertrauliche Informationen zuzugreifen. Der Angreifer k\u00f6nnte diese Schwachstelle nutzen, um sich<\/span> <span lang=\"en-US\">unerlaubte Zugriffe. <\/span><span lang=\"en-US\">WALLIX empfiehlt, die ver\u00f6ffentlichten Korrekturen sofort anzuwenden oder vorher die unten beschriebene Umgehungsl\u00f6sung anzuwenden.<\/span><b><span lang=\"en-US\">Betroffene Produkte<\/span><\/b><span lang=\"en-US\">Alle Versionen von WALLIX Access Manager<\/span><span lang=\"en-US\">.<\/span><b><span lang=\"en-US\">Umgehungen<\/span><\/b>Der folgende Artikel unserer Wissensdatenbank zeigt Ihnen, wie Sie das Problem umgehen k\u00f6nnen.<a href=\"https:\/\/support.wallix.com\/s\/article\/How-can-I-mitigate-CVE-2023-23592\" target=\"_blank\" rel=\"noopener noreferrer\" data-auth=\"NotApplicable\" data-linkindex=\"0\">https:\/\/support.wallix.com\/s\/article\/How-can-I-mitigate-CVE-2023-23592<\/a><b><span lang=\"en-US\">Feste Software<\/span><\/b><span lang=\"en-US\">Hotfixes sind in unserem Download-Portal verf\u00fcgbar:<\/span>&#8211; <a href=\"https:\/\/updates.wallix.com\/endpoint\/login?ReturnTo=https%3A%2F%2Fupdates.wallix.com%2Faccessmanager%2Faccessmanager-3.0.16.0.iso&amp;IdP=https%3A%2F%2Fsupport.wallix.com\" target=\"_blank\" rel=\"noopener noreferrer\" data-auth=\"NotApplicable\" data-linkindex=\"1\"><span lang=\"en-US\">Version 3.0.16<\/span><\/a>&#8211; <a href=\"https:\/\/updates.wallix.com\/endpoint\/login?ReturnTo=https%3A%2F%2Fupdates.wallix.com%2Faccessmanager%2Faccessmanager-4.0.3.2.iso&amp;IdP=https%3A%2F%2Fsupport.wallix.com\" target=\"_blank\" rel=\"noopener noreferrer\" data-auth=\"NotApplicable\" data-linkindex=\"2\"><span lang=\"en-US\">Version 4.0.3<\/span><\/a><b><span lang=\"en-US\">Ausbeutung und \u00f6ffentliche Bekanntmachungen<\/span><\/b><span lang=\"en-US\">WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde. Es wird jedoch empfohlen, auf den WALLIX-Bastionen, die mit dem WALLIX Access Manager verbunden sind, nach abnormalen Aktivit\u00e4ten zu suchen. Es wird insbesondere empfohlen, nach ungew\u00f6hnlichen IP-Adressen zu suchen, die von privilegierten Benutzern verwendet werden und die m\u00f6glicherweise von mehreren Benutzerkonten genutzt werden.<\/span><b><span lang=\"en-US\">Quelle<\/span><\/b><span lang=\"en-US\">Interne Sicherheitskontrollen<\/span><\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div><div id='av_section_8'  class='avia-section av-29k7kd-e04265b670bddc0f466d80c0b864b53f main_color avia-section-default avia-no-border-styling  avia-builder-el-22  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b\">\n#top .av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-4ioy65-4508c26906ae53cc9d43dfd49dd1c45b av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-23  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >DEZEMBER 2021<\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>Log4J Sicherheitsl\u00fccke bei entfernter Codeausf\u00fchrung (CVE-2021-44228)<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-2zscrh-0a2cb36181c2906b0431e672434bd74f '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><p><strong>ZUSAMMENFASSUNG<\/strong>Das Alibaba Cloud Security Team hat am 9. Dezember 2021 eine Schwachstelle in log4j, einer verbreiteten Java-Logging-Bibliothek, ver\u00f6ffentlicht. (CVE-2021-44228) Diese Sicherheitsl\u00fccke erm\u00f6glicht die unauthentifizierte Remotecodeausf\u00fchrung in Java-Anwendungen.<strong>Betroffene Produkte<\/strong>Alle Versionen von WALLIX Access Manager<strong>Umgehungen<\/strong>Die Standardkonfiguration von WALLIX Access Manager verhindert die Ausnutzung der genannten Schwachstelle im Anmeldefeld.Um jedoch zu verhindern, dass im Falle einer \u00c4nderung der Standardkonfiguration des WALLIX Access Managers ein Exploit gefunden werden kann, schl\u00e4gt das WALLIX-Team einen Patch vor, der die fehlerhafte Klasse der log4j-Bibliothek deaktiviert.Dieser Patch gilt f\u00fcr alle Versionen von Access Manager ab der Version 2.0.Der folgende Artikel unserer Wissensdatenbank bietet Ihnen den Zugang zum Patch sowie die Prozedur zu dessen Installation.<a href=\"https:\/\/support.wallix.com\/s\/article\/CVE-2021-44228-Mitigation-procedure\">https:\/\/support.wallix.com\/s\/article\/CVE-2021-44228-Mitigation-procedure<\/a><strong>Feste Software<\/strong>Ein Update der Log4J-Version ist zusammen mit der Access Manager-Version 3.0.11 geplant.Die Ver\u00f6ffentlichung dieser Version ist f\u00fcr Ende Dezember 2021 geplant.<strong>Ausbeutung und \u00f6ffentliche Bekanntmachungen<\/strong>WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde. Es wird jedoch empfohlen, auf den WALLIX-Bastionen, die mit dem WALLIX Access Manager verbunden sind, nach abnormalen Aktivit\u00e4ten zu suchen. Insbesondere wird empfohlen, nach der Erstellung neuer Benutzer oder Berechtigungen zu suchen, insbesondere seit der Ver\u00f6ffentlichung des CVE<strong>Quelle<\/strong>Das Alibaba Cloud Security Team hat am 9. Dezember 2021 eine Schwachstelle in log4j, einer verbreiteten Java-Logging-Bibliothek, ver\u00f6ffentlicht. (CVE-2021-44228)<\/p>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-lpmr1ai0-b6ec89c5c2384aac021f6ef550a9b8e8\">\n.avia-section.av-lpmr1ai0-b6ec89c5c2384aac021f6ef550a9b8e8{\nbackground-color:#e8e8e8;\nbackground-image:unset;\n}\n<\/style>\n<div id='av_section_9'  class='avia-section av-lpmr1ai0-b6ec89c5c2384aac021f6ef550a9b8e8 main_color avia-section-default avia-no-border-styling  avia-builder-el-25  el_after_av_section  el_before_av_section  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27\">\n#top .av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27{\npadding-bottom:30px;\ncolor:#172542;\nfont-size:30px;\n}\nbody .av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .av-special-heading-tag{\nfont-size:30px;\n}\n.av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .special-heading-inner-border{\nborder-color:#172542;\n}\n.av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .av-subheading{\nfont-size:18px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-9lz3x-eed32e05854b9fc65b7cbda7d2feed27 av-special-heading-h2 custom-color-heading blockquote modern-quote  avia-builder-el-26  el_before_av_textblock  avia-builder-el-first  av-inherit-size'><h2 class='av-special-heading-tag '  itemprop=\"headline\"  >JANUAR 2021 <\/h2><div class='av_custom_color av-subheading av-subheading_below'><p>Sudo Privilege Escalation mit Auswirkungen auf WALLIX-Produkte &#8211; CVE-2021-3156<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><section  class='av_textblock_section av-lmrwq1h4-e30c9b734003b6ed2e3f4144838826ff '   itemscope=\"itemscope\" itemtype=\"https:\/\/schema.org\/CreativeWork\" ><div class='avia_textblock'  itemprop=\"text\" ><h6><span style=\"color: #f4813a;\">ZUSAMMENFASSUNG<\/span><\/h6>\n<p>Das Qualys Research Team hat eine Heap-Overflow-Schwachstelle in sudo (CVE-2021-3156) entdeckt. Jeder lokale, unprivilegierte Benutzer kann auf einem verwundbaren Host mit einer Standard-Sudo-Konfiguration Root-Rechte erlangen, indem er diese Schwachstelle ausnutzt.sudo kann nur lokal ausgenutzt werden. Dies bedeutet, dass entweder :<\/p>\n<ul>\n<li>Der Benutzer ist auf der WALLIX Bastion \u00fcber das wabadmin-Konto mit der Administrationsoberfl\u00e4che verbunden. Dieser Benutzer kann dann sudo ausnutzen, um root zu werden und alle Sicherheiten von WALLIX Bastion zu umgehen<\/li>\n<li>Eine RCE-Schwachstelle (Remote Code Exploitation) besteht in einem anderen Teil der WALLIX-Software oder in einem Drittanbieter, der eine lokale Shell bereitstellt. Nach erfolgreicher Ausnutzung dieser Schwachstelle kann der Angreifer sudo ausnutzen, um root zu werden. Nach dem Wissen von WALLIX hat eine aktuelle Bastion keine solche Schwachstelle.<\/li>\n<\/ul>\n<h6>Betroffene Produkte<\/h6>\n<ul>\n<li>Alle Versionen vor WALLIX Bastion 8.0.6 (enthalten)<\/li>\n<li>Alle Versionen 8.1 und 8.2<\/li>\n<\/ul>\n<h6>Umgehungen<\/h6>\n<p>Es gibt keine Abhilfe f\u00fcr diese Sicherheitsl\u00fccke<\/p>\n<h6>Feste Software<\/h6>\n<p>Diese Sicherheitsl\u00fccke ist ab WALLIX Bastion 8.0.7 und 7.0.14 behoben.<\/p>\n<ul>\n<li>Ein Fix Patch ist f\u00fcr Version 8.0.6 und fr\u00fcher verf\u00fcgbar (gilt f\u00fcr die Versionen 8.1 und 8.2)<\/li>\n<li>Ein Fix-Patch ist f\u00fcr Version 7.0.13 und fr\u00fcher verf\u00fcgbar<\/li>\n<\/ul>\n<p>Diese Elemente sind auf unserer Download-Seite verf\u00fcgbar: <span style=\"color: #f4913a;\"><a style=\"color: #f4913a;\" href=\"https:\/\/support.wallix.com\/s\/article\/Patch-for-Sudo-vulnerability-CVE-2021-3156\" target=\"_blank\" rel=\"noopener noreferrer\" data-auth=\"NotApplicable\">WALLIX-Unterst\u00fctzung: Patches<\/a><\/span><\/p>\n<h6>Ausbeutung und \u00f6ffentliche Bekanntmachungen<\/h6>\n<p>WALLIX ist nicht bekannt, dass die in diesem Hinweis beschriebene Sicherheitsl\u00fccke \u00f6ffentlich bekannt gemacht oder b\u00f6swillig ausgenutzt wurde.<\/p>\n<h6>Quelle<\/h6>\n<p>Am 26. Januar 2021 hat Qualys diese Schwachstelle in einem Sicherheitsbulletin unter folgendem Link \u00f6ffentlich bekannt gegeben: <a href=\"https:\/\/blog.qualys.com\/vulnerabilities-threat-research\/2021\/01\/26\/cve-2021-3156-heap-based-buffer-overflow-in-sudo-baron-samedit\" target=\"_blank\" rel=\"noopener noreferrer\" data-auth=\"NotApplicable\">https:\/\/blog.qualys.com<\/a><\/p>\n<\/div><\/section><\/div><\/div><\/div><!-- close content main div --><\/div><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-ogks99-ce4f98266b381d0663d4404da1b45671\">\n.avia-section.av-ogks99-ce4f98266b381d0663d4404da1b45671{\nbackground-color:#1e91ad;\nbackground:linear-gradient( to bottom, #1e91ad, #172542 );\n}\n<\/style>\n<div id='av_section_10'  class='avia-section av-ogks99-ce4f98266b381d0663d4404da1b45671 main_color avia-section-large avia-no-border-styling  avia-builder-el-28  el_after_av_section  avia-builder-el-last  avia-bg-style-scroll container_wrap fullsize'  ><div class='container av-section-cont-open' ><div class='template-page content  av-content-full alpha units'><div class='post-entry post-entry-type-page post-entry-41724'><div class='entry-content-wrapper clearfix'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c\">\n#top .av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c{\npadding-bottom:0;\ncolor:#ffffff;\nfont-size:37px;\n}\nbody .av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .av-special-heading-tag{\nfont-size:37px;\n}\n.av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .special-heading-inner-border{\nborder-color:#ffffff;\n}\n.av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .av-subheading{\nfont-size:26px;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-lr7zf1-0fb25b3f3bf29cba88ff273a7e08c46c av-special-heading-h3 custom-color-heading blockquote modern-quote modern-centered  avia-builder-el-29  el_before_av_one_fourth  avia-builder-el-first  av-inherit-size'><h3 class='av-special-heading-tag '  itemprop=\"headline\"  >WALLIX UNTERST\u00dcTZUNG <span class='special_amp'>&amp;<\/span> DIENSTLEISTUNGEN<\/h3><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><div class='flex_column_table av-koqb5p-7b5560d5d94e8a3834f17d963de96b99 sc-av_one_fourth av-equal-height-column-flextable'>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-koqb5p-7b5560d5d94e8a3834f17d963de96b99\">\n.flex_column.av-koqb5p-7b5560d5d94e8a3834f17d963de96b99{\nwidth:23.125%;\nmargin-left:0;\npadding:20px 20px 20px 20px;\n}\n#top .flex_column_table.av-equal-height-column-flextable.av-koqb5p-7b5560d5d94e8a3834f17d963de96b99 .av-flex-placeholder{\nwidth:2.5%;\n}\n<\/style>\n<div  class='flex_column av-koqb5p-7b5560d5d94e8a3834f17d963de96b99 av_one_fourth  avia-builder-el-30  el_after_av_heading  el_before_av_one_fourth  first flex_column_table_cell av-equal-height-column av-align-top av-animated-generic bottom-to-top  '     ><p>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-1yiekt-f85808642914a8db3fdb140a26f41b36\">\n#top .av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36{\nmargin:5px 5px 5px 5px;\npadding-bottom:10px;\ncolor:#ffffff;\nfont-size:24px;\n}\nbody .av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .av-special-heading-tag{\nfont-size:24px;\n}\n.av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .special-heading-inner-border{\nborder-color:#ffffff;\n}\n.av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .av-subheading{\nfont-size:16px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-1yiekt-f85808642914a8db3fdb140a26f41b36 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-1yiekt-f85808642914a8db3fdb140a26f41b36 av-special-heading-h3 custom-color-heading blockquote modern-quote modern-centered  avia-builder-el-31  el_before_av_button  avia-builder-el-first  av-inherit-size'><h3 class='av-special-heading-tag '  itemprop=\"headline\"  >WALLIXBERATUNG<\/h3><div class='av_custom_color av-subheading av-subheading_below'><p>Konzeption, Entwurf und Sicherung komplexer oder umfangreicher Implementierungen<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><div  class='avia-button-wrap av-h9dibx-7778ecd432b1044a3a9da4398a635d6c-wrap avia-button-center  avia-builder-el-32  el_after_av_heading  avia-builder-el-last '>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-h9dibx-7778ecd432b1044a3a9da4398a635d6c\">\n#top #wrap_all .avia-button.av-h9dibx-7778ecd432b1044a3a9da4398a635d6c{\nbackground-color:#ec6707;\nborder-color:#ea6e52;\ncolor:#ffffff;\nborder-style:solid;\nborder-width:1px 1px 1px 1px;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-h9dibx-7778ecd432b1044a3a9da4398a635d6c:hover{\nbackground-color:#ffffff;\ncolor:#f17c00;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-h9dibx-7778ecd432b1044a3a9da4398a635d6c .avia-svg-icon svg:first-child{\nfill:#ffffff;\nstroke:#ffffff;\n}\n#top #wrap_all .avia-button.av-h9dibx-7778ecd432b1044a3a9da4398a635d6c:hover .avia-svg-icon svg:first-child{\nfill:#f17c00;\nstroke:#f17c00;\n}\n<\/style>\n<a href='https:\/\/www.wallix.com\/de\/support-service\/consulting\/'  class='avia-button av-h9dibx-7778ecd432b1044a3a9da4398a635d6c av-link-btn avia-icon_select-no avia-size-large avia-position-center'  target=\"_blank\"  rel=\"noopener noreferrer\"  aria-label=\"BERATUNG\"><span class='avia_iconbox_title' >BERATUNG<\/span><\/a><\/div><\/p><\/div><div class='av-flex-placeholder'><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-1mkvm5-051e82c05dfa1f80d127cd8444933506\">\n.flex_column.av-1mkvm5-051e82c05dfa1f80d127cd8444933506{\nwidth:23.125%;\nmargin-left:0;\npadding:20px 20px 20px 20px;\n}\n#top .flex_column_table.av-equal-height-column-flextable.av-1mkvm5-051e82c05dfa1f80d127cd8444933506 .av-flex-placeholder{\nwidth:2.5%;\n}\n<\/style>\n<div  class='flex_column av-1mkvm5-051e82c05dfa1f80d127cd8444933506 av_one_fourth  avia-builder-el-33  el_after_av_one_fourth  el_before_av_one_fourth  flex_column_table_cell av-equal-height-column av-align-top av-animated-generic bottom-to-top  '     ><p>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243\">\n#top .av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243{\nmargin:5px 5px 5px 5px;\npadding-bottom:10px;\ncolor:#ffffff;\nfont-size:24px;\n}\nbody .av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .av-special-heading-tag{\nfont-size:24px;\n}\n.av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .special-heading-inner-border{\nborder-color:#ffffff;\n}\n.av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .av-subheading{\nfont-size:16px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-ev5q7x-6dd5368f5ab8f3a7b1c1d381c3c13243 av-special-heading-h3 custom-color-heading blockquote modern-quote modern-centered  avia-builder-el-34  el_before_av_button  avia-builder-el-first  av-inherit-size'><h3 class='av-special-heading-tag '  itemprop=\"headline\"  >KUNDENBETREUUNG<\/h3><div class='av_custom_color av-subheading av-subheading_below'><p>Nehmen Sie Kontakt aufmit dem Kundenteam<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><div  class='avia-button-wrap av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885-wrap avia-button-center  avia-builder-el-35  el_after_av_heading  avia-builder-el-last '>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885\">\n#top #wrap_all .avia-button.av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885{\nbackground-color:#ec6707;\nborder-color:#ea6e52;\ncolor:#ffffff;\nborder-style:solid;\nborder-width:1px 1px 1px 1px;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885:hover{\nbackground-color:#ffffff;\ncolor:#f17c00;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885 .avia-svg-icon svg:first-child{\nfill:#ffffff;\nstroke:#ffffff;\n}\n#top #wrap_all .avia-button.av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885:hover .avia-svg-icon svg:first-child{\nfill:#f17c00;\nstroke:#f17c00;\n}\n<\/style>\n<a href='https:\/\/www.wallix.com\/de\/support-service\/kunden-support\/'  class='avia-button av-c296m5-e5a9773cca1ba07fc5f4d3e8e7cac885 av-link-btn avia-icon_select-no avia-size-large avia-position-center'  target=\"_blank\"  rel=\"noopener noreferrer\"  aria-label=\"KUNDENBETREUUNG\"><span class='avia_iconbox_title' >KUNDENBETREUUNG<\/span><\/a><\/div><\/p><\/div><div class='av-flex-placeholder'><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-a7n7gd-648c6f678794c5b9b48971087f36ed59\">\n.flex_column.av-a7n7gd-648c6f678794c5b9b48971087f36ed59{\nwidth:23.125%;\nmargin-left:0;\npadding:20px 20px 20px 20px;\n}\n#top .flex_column_table.av-equal-height-column-flextable.av-a7n7gd-648c6f678794c5b9b48971087f36ed59 .av-flex-placeholder{\nwidth:2.5%;\n}\n<\/style>\n<div  class='flex_column av-a7n7gd-648c6f678794c5b9b48971087f36ed59 av_one_fourth  avia-builder-el-36  el_after_av_one_fourth  el_before_av_one_fourth  flex_column_table_cell av-equal-height-column av-align-top av-animated-generic bottom-to-top  '     ><p>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e\">\n#top .av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e{\nmargin:5px 5px 5px 5px;\npadding-bottom:10px;\ncolor:#ffffff;\nfont-size:24px;\n}\nbody .av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .av-special-heading-tag{\nfont-size:24px;\n}\n.av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .special-heading-inner-border{\nborder-color:#ffffff;\n}\n.av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .av-subheading{\nfont-size:16px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-vvsul-cc6f64d43dc6a5b6da85e2975d14f31e av-special-heading-h3 custom-color-heading blockquote modern-quote modern-centered  avia-builder-el-37  el_before_av_button  avia-builder-el-first  av-inherit-size'><h3 class='av-special-heading-tag '  itemprop=\"headline\"  >PROFESSIONELLE DIENSTLEISTUNGEN<\/h3><div class='av_custom_color av-subheading av-subheading_below'><p>Implementierung, Pr\u00fcfung und Unterst\u00fctzung f\u00fcr WALLIX-L\u00f6sungen<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><div  class='avia-button-wrap av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c-wrap avia-button-center  avia-builder-el-38  el_after_av_heading  avia-builder-el-last '>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c\">\n#top #wrap_all .avia-button.av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c{\nbackground-color:#ec6707;\nborder-color:#ea6e52;\ncolor:#ffffff;\nborder-style:solid;\nborder-width:1px 1px 1px 1px;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c:hover{\nbackground-color:#ffffff;\ncolor:#f17c00;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c .avia-svg-icon svg:first-child{\nfill:#ffffff;\nstroke:#ffffff;\n}\n#top #wrap_all .avia-button.av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c:hover .avia-svg-icon svg:first-child{\nfill:#f17c00;\nstroke:#f17c00;\n}\n<\/style>\n<a href='https:\/\/www.wallix.com\/de\/support-service\/serviceleistungen\/'  class='avia-button av-775665-21ffa0b33d2506d9a3c4f85389a2fd7c av-link-btn avia-icon_select-no avia-size-large avia-position-center'  target=\"_blank\"  rel=\"noopener noreferrer\"  aria-label=\"PROFESSIONELLE DIENSTLEISTUNGEN\"><span class='avia_iconbox_title' >PROFESSIONELLE DIENSTLEISTUNGEN<\/span><\/a><\/div><\/p><\/div><div class='av-flex-placeholder'><\/div>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-5l8jvh-4926330bb5166149bc14493c9e84dfe8\">\n.flex_column.av-5l8jvh-4926330bb5166149bc14493c9e84dfe8{\nwidth:23.125%;\nmargin-left:0;\npadding:20px 20px 20px 20px;\n}\n#top .flex_column_table.av-equal-height-column-flextable.av-5l8jvh-4926330bb5166149bc14493c9e84dfe8 .av-flex-placeholder{\nwidth:2.5%;\n}\n<\/style>\n<div  class='flex_column av-5l8jvh-4926330bb5166149bc14493c9e84dfe8 av_one_fourth  avia-builder-el-39  el_after_av_one_fourth  avia-builder-el-last  flex_column_table_cell av-equal-height-column av-align-top av-animated-generic bottom-to-top  '     ><p>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-472zvh-9625a081e8322afc5cc2475c16aa3733\">\n#top .av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733{\nmargin:5px 5px 5px 5px;\npadding-bottom:10px;\ncolor:#ffffff;\nfont-size:24px;\n}\nbody .av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .av-special-heading-tag .heading-char{\nfont-size:25px;\n}\n#top #wrap_all .av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .av-special-heading-tag{\nfont-size:24px;\n}\n.av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .special-heading-inner-border{\nborder-color:#ffffff;\n}\n.av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .av-subheading{\nfont-size:16px;\ncolor:#ec6707;\n}\n\n@media only screen and (min-width: 480px) and (max-width: 767px){ \n#top #wrap_all .av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n\n@media only screen and (max-width: 479px){ \n#top #wrap_all .av-special-heading.av-472zvh-9625a081e8322afc5cc2475c16aa3733 .av-special-heading-tag{\nfont-size:0.8em;\n}\n}\n<\/style>\n<div  class='av-special-heading av-472zvh-9625a081e8322afc5cc2475c16aa3733 av-special-heading-h3 custom-color-heading blockquote modern-quote modern-centered  avia-builder-el-40  el_before_av_button  avia-builder-el-first  av-inherit-size'><h3 class='av-special-heading-tag '  itemprop=\"headline\"  >WALLIXAKADEMIE<\/h3><div class='av_custom_color av-subheading av-subheading_below'><p>Schulungen und Zertifizierungen f\u00fcr Partner und Endnutzer<\/p>\n<\/div><div class=\"special-heading-border\"><div class=\"special-heading-inner-border\"><\/div><\/div><\/div><div  class='avia-button-wrap av-20pa31-7c40a873c1bee3251e4010365fcadca2-wrap avia-button-center  avia-builder-el-41  el_after_av_heading  avia-builder-el-last '>\n<style type=\"text\/css\" data-created_by=\"avia_inline_auto\" id=\"style-css-av-20pa31-7c40a873c1bee3251e4010365fcadca2\">\n#top #wrap_all .avia-button.av-20pa31-7c40a873c1bee3251e4010365fcadca2{\nbackground-color:#ec6707;\nborder-color:#ea6e52;\ncolor:#ffffff;\nborder-style:solid;\nborder-width:1px 1px 1px 1px;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-20pa31-7c40a873c1bee3251e4010365fcadca2:hover{\nbackground-color:#ffffff;\ncolor:#f17c00;\ntransition:all 0.4s ease-in-out;\n}\n#top #wrap_all .avia-button.av-20pa31-7c40a873c1bee3251e4010365fcadca2 .avia-svg-icon svg:first-child{\nfill:#ffffff;\nstroke:#ffffff;\n}\n#top #wrap_all .avia-button.av-20pa31-7c40a873c1bee3251e4010365fcadca2:hover .avia-svg-icon svg:first-child{\nfill:#f17c00;\nstroke:#f17c00;\n}\n<\/style>\n<a href='https:\/\/www.wallix.com\/de\/support-service\/wallix-academy\/'  class='avia-button av-20pa31-7c40a873c1bee3251e4010365fcadca2 av-link-btn avia-icon_select-no avia-size-large avia-position-center'  target=\"_blank\"  rel=\"noopener noreferrer\"  aria-label=\"AUSBILDUNG\"><span class='avia_iconbox_title' >AUSBILDUNG<\/span><\/a><\/div><\/p><\/div><\/div><!--close column table wrapper. Autoclose: 1 --><\/changed><\/ip><\/actor><\/name><\/object><\/p>\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":3,"featured_media":0,"parent":41709,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"content-type":"","inline_featured_image":false,"footnotes":""},"class_list":["post-41724","page","type-page","status-publish","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Warnungen und Hinweise - Cybersecurity<\/title>\n<meta name=\"description\" content=\"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/\" \/>\n<meta property=\"og:locale\" content=\"de_DE\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Warnungen und Hinweise - Cybersecurity\" \/>\n<meta property=\"og:description\" content=\"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/\" \/>\n<meta property=\"og:site_name\" content=\"WALLIX\" \/>\n<meta property=\"article:modified_time\" content=\"2026-07-17T15:08:04+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@wallixcom\" \/>\n<meta name=\"twitter:label1\" content=\"Gesch\u00e4tzte Lesezeit\" \/>\n\t<meta name=\"twitter:data1\" content=\"16\u00a0Minuten\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/warnungen-und-hinweise\\\/\",\"url\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/warnungen-und-hinweise\\\/\",\"name\":\"Warnungen und Hinweise - Cybersecurity\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/#website\"},\"datePublished\":\"2024-01-23T14:47:57+00:00\",\"dateModified\":\"2026-07-17T15:08:04+00:00\",\"description\":\"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/warnungen-und-hinweise\\\/#breadcrumb\"},\"inLanguage\":\"de\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/warnungen-und-hinweise\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/warnungen-und-hinweise\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/cybersecurity-simplified\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SUPPORT &#038; SERVICE\",\"item\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/support-service\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Warnungen und Hinweise\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/#website\",\"url\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/\",\"name\":\"WALLIX\",\"description\":\"CYBERSECURITY SIMPLIFIED\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.wallix.com\\\/de\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"de\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Warnungen und Hinweise - Cybersecurity","description":"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/","og_locale":"de_DE","og_type":"article","og_title":"Warnungen und Hinweise - Cybersecurity","og_description":"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!","og_url":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/","og_site_name":"WALLIX","article_modified_time":"2026-07-17T15:08:04+00:00","twitter_card":"summary_large_image","twitter_site":"@wallixcom","twitter_misc":{"Gesch\u00e4tzte Lesezeit":"16\u00a0Minuten"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/","url":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/","name":"Warnungen und Hinweise - Cybersecurity","isPartOf":{"@id":"https:\/\/www.wallix.com\/de\/#website"},"datePublished":"2024-01-23T14:47:57+00:00","dateModified":"2026-07-17T15:08:04+00:00","description":"Wichtig: Bleiben Sie auf dem Laufenden mit den neuesten Sicherheitswarnungen und -hinweisen f\u00fcr WALLIX-L\u00f6sungen. Verpassen Sie es nicht!","breadcrumb":{"@id":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/#breadcrumb"},"inLanguage":"de","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.wallix.com\/de\/support-service\/warnungen-und-hinweise\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.wallix.com\/de\/cybersecurity-simplified\/"},{"@type":"ListItem","position":2,"name":"SUPPORT &#038; SERVICE","item":"https:\/\/www.wallix.com\/de\/support-service\/"},{"@type":"ListItem","position":3,"name":"Warnungen und Hinweise"}]},{"@type":"WebSite","@id":"https:\/\/www.wallix.com\/de\/#website","url":"https:\/\/www.wallix.com\/de\/","name":"WALLIX","description":"CYBERSECURITY SIMPLIFIED","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.wallix.com\/de\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"de"}]}},"_links":{"self":[{"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/pages\/41724","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/comments?post=41724"}],"version-history":[{"count":34,"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/pages\/41724\/revisions"}],"predecessor-version":[{"id":92044,"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/pages\/41724\/revisions\/92044"}],"up":[{"embeddable":true,"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/pages\/41709"}],"wp:attachment":[{"href":"https:\/\/www.wallix.com\/de\/wp-json\/wp\/v2\/media?parent=41724"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}