{"api_version":"v1","generated_at":"2026-10-09T01:10:00+00:00","product":{"cve_count":1,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-publisher-not-identified-apache-log4net-8891fd0be187","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache log4net","next_cursor":null,"observations":[{"affected":"Apache log4net up to 2.0.8","affected_versions_present":true,"cve_id":"CVE-2018-1285","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-1285","fixed":"All customers running ASE2000 versions 2.25 through 2.37 are affected by this issue and are required to upgrade to version 2.38 or later to apply the security fix. Upgrade instructions and user documentation are available at www.ase-systems.com. For detailed, step-by-step guidance on upgrading to the latest version and patching the impacted components, please contact our support team at support@ase-systems.com.","last_modified":"2024-08-05T03:59:37.654Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-239-04","primary_source":"","published":"2020-05-11T16:41:28.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Publisher not identified"}}
