Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

55 patched

Avg Response

459d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2017-4527CVE-2017-4527 (Apache Tapestry 3.9.0 XML External Entity Vulnerability)N/A-2837dUnpatched
CVE-2017-4530Unpatched Java Logging Library VulnerabilityN/A-2837dUnpatched
CVE-2017-4523Zero-Day RCE in Apache HTTP ServerN/A-2837dUnpatched
CVE-2017-4525Apache Tomcat VulnerabilityN/A-2837dUnpatched
CVE-2017-4524Apache HTTP Server Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4528Apache Log4j Remote Code Execution VulnerabilityN/A-2837dUnpatched
CVE-2017-4513Apache Struts 2.x VulnerabilityN/A-2837dUnpatched
CVE-2017-4514Apache HTTP Server Remote File Inclusion VulnerabilityN/A-2837dUnpatched
CVE-2017-4526Zero-Day RCE in a Java Logging LibraryN/A-2837dUnpatched
CVE-2017-4520Apache HTTP Server Remote Code Execution VulnerabilityN/A-2837dUnpatched