Beware, your logs - how blocked log4shell, Spring4Shell etc requests can still lead to compromise
Updated Dec 12, 2022
Version 2.0Was this article helpful?
Absoultely - log4shell, at least, gives you complete remote code execution on the target vulnerable server (say a logging server sitting behind the BIG-IP), so you are free to drop webshells, malware, reverse shells, pivot to other hosts etc - being exposed is very bad indeed!