Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

55 patched

Avg Response

459d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2016-9507Zero-Day in Apache Commons RMIN/A-3145dUnpatched
CVE-2016-9515Uninitialized Pointer Dereference in libxml2N/A-3145dUnpatched
CVE-2016-9611Apache OpenOfficeN/A-3145dUnpatched
CVE-2016-9653Apache HTTP Server Remote File Inclusion VulnerabilityN/A-3145dUnpatched
CVE-2016-9674CVE-2016-9674 (Unspecified)N/A-3145dUnpatched
CVE-2016-9761Apache Log4j Remote Code Execution VulnerabilityN/A-3145dUnpatched
CVE-2016-9765Apache Struts 2.x Heartbleed VulnerabilityN/A-3145dUnpatched
CVE-2016-9785Zero-Day RCE in a Java Logging LibraryN/A-3145dUnpatched
CVE-2016-1000362Apache HTTP Server Remote Code Execution VulnerabilityN/A-3146dUnpatched
CVE-2016-1000370Zero-Day Vulnerability in a Java Logging LibraryN/A-3146dUnpatched