Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

55 patched

Avg Response

459d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2017-4392Zero-Day RCE in a Legacy Java LibraryN/A-2837dUnpatched
CVE-2017-4380Apache HTTP Server Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4386Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4404Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4412Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4407Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4408Apache Log4j Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4393Apache Tomcat VulnerabilityN/A-2837dUnpatched
CVE-2017-4409Apache HTTP Server Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4395CVE-2017-4395 - "Apache Commons RMI" VulnerabilityN/A-2837dUnpatched