Cybersecurity Vulnerability Statements
Assessment and Communication Process
The Allied Telesis Security Monitoring team monitors incidents and vulnerabilities that may affect Allied Telesis products. Our Net.Cover maintenance plans allow you to obtain the latest software updates to ensure your network is free from known vulnerabilities.
Latest Vulnerability Statement
Apache Log4j vulnerability
(published 14 Dec 2021; last updated 6 March 2022)
No current Allied Telesis products are considered vulnerable. In the unlikely event that you are using a version of Vista Manager EX earlier than 3.0.3, we recommend upgrading as an additional safeguard.
Vista Manager EX
Vista Manager EX versions 2.5 – 3.0.2, Windows platform
Vista Manager EX versions 2.5 – 3.0.2, Windows platform
These no-longer-used early versions of Vista Manager EX use a version of Logstash that Elasticsearch B.V. has stated is vulnerable to this attack. However, since its use in Vista Manager EX is limited, the Allied Telesis Cybersecurity Team has not been able to exploit the vulnerability.
