Our Brands

Welcome to the Schneider Electric Website

Welcome to our website.
		
How can we help you today?
PowerChute Network Shutdown version 4.2 Scripts to Mitigate Log4Shell Vulnerabilities – CVE-2021-44228, CVE-2021-45046

Issue:
PowerChute Network Shutdown version 4.2 is affected by Log4Shell vulnerabilities CVE-2021-44228 and CVE-2021-45046.


Products:
PowerChute Network Shutdown v4.2

For PowerChute Network Shutdown versions 4.3, 4.4, 4.4.1, see Schneider Electric's, FAQ PowerChute Network Shutdown Scripts to Mitigate Multiple CVEs Including Log4Shell Vulnerabilities

Environment:
All supported OS for the versions of PowerChute Network Shutdown version 4.2

Cause:
PowerChute Network Shutdown contains a vulnerable version of the log4j-core jar file. For more information, please refer to this security bulletin.

Solution:
Download the attached 4.2.0.1 scripts that remove the vulnerable log4j2

On Windows OS, to run the PCNS patch, uncompress the zip, open a command prompt as an administrator, cd to the folder where the uncompressed files reside, and run the command run_patch.cmd. The patch will remove the old log4j files and install log4j 2.17. The patch will also update the pcns.jar file.
PowerChute Network, Shutdown Windows scripts, are designed for all supported versions of Windows OS.

On Linux systems, uncompress the zip file. Then, if uncompressed on a Windows system, copy the log4jPatch.sh and the files folder to the Linux system. Once the files have been copied, open a terminal window and cd to the directory where the files have been copied. Run the command sudo chmod 775 log4jPatch.sh to make the file executable. Then run the command sudo ./log4jPatch.sh to run the patch. The patch will stop the PowerChute service, copy a new pcns.jar file and a new log4j 2.17 file to the appropriate directories, and then restart PowerChute.

PowerChute Network's shutdown Linux scripts are designed for all supported versions of Linux, ESXi, Solaris, AIX, HPUX, and MacOS.

Schneider Electric Egypt and North East Africa

Attachment(s)
log4shell_4.2.0.1_en.zip.sha-512 [156 Bytes]
log4shell_4.2.0.1_en.zip [3.49 MB]
Explore more
Range:
Users group

Discuss this topic with experts

Visit our community and get advice from experts and peers on this topic and more
Explore more
Range:

Need help?

  • Start here!

    Find answers now. Search for a solution on your own, or connect with one of our experts.

  • Contact Support

    Reach out to our customer care team to receive more information, technical support, assistance with complaints and more.

  • Where to buy?

    Easily find the nearest Schneider Electric distributor in your location.

  • Search FAQs

    Search topic-related frequently asked questions to find answers you need.

  • Contact Sales

    Start your sales inquiry online and an expert will connect with you.

I'd like to receive news and commercial info from Schneider Electric and its affiliates via electronic communication means such as email, and I agree to the collection of information on the opening and clicks on these emails (using invisible pixels in the images), to measure performance of our communications and improve them. For more details, please read our Privacy Policy.

  • Products Documentation
  • Software Downloads
  • Product Selector
  • Product Substitution and Replacement
  • Help and Contact Center
  • Find our Offices
  • Get a Quote
  • Where to buy
  • Careers
  • Company Profile
  • Report a misconduct
  • Accessibility
  • Newsroom
  • Investors
  • EcoStruxure
  • Job Search
  • Blog
  • Privacy Policy
  • Cookie Notice
  • Terms of use
  • Change your cookie settings
Your browser is out of date and has known security issues.

It also may not display all features of this website or other websites.

Please upgrade your browser to access all of the features of this website.

Latest version for Google Chrome, Mozilla Firefox or Microsoft Edgeis recommended for optimal functionality.