Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

55 patched

Avg Response

459d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2017-4120CVE-2017-4120 - "Unsorted Deserialization"N/A-2837dUnpatched
CVE-2017-4123Log4Shell VulnerabilityN/A-2837dUnpatched
CVE-2017-4129CVE-2017-4129N/A-2837dUnpatched
CVE-2017-4140Apache Tomcat VulnerabilityN/A-2837dUnpatched
CVE-2017-4145Apache HTTP Server Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4133CVE-2017-4133 - "Unsorted Deserialization"N/A-2837dUnpatched
CVE-2017-4135Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4146Apache HTTP Server VulnerabilityN/A-2837dUnpatched
CVE-2017-4171Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4172Apache Struts 2.x Heartbleed VulnerabilityN/A-2837dUnpatched