Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

55 patched

Avg Response

459d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2014-4641Apache HTTP Server Remote Code Execution VulnerabilityN/A-3996dUnpatched
CVE-2014-4640Apache Struts 2.x VulnerabilityN/A-3996dUnpatched
CVE-2013-6998Apache Log4j Remote Code Execution VulnerabilityN/A-4007dUnpatched
CVE-2014-3605Apache HTTP Server Remote File Inclusion VulnerabilityN/A-4039dUnpatched
CVE-2014-3671Unpatched Apache KafkaN/A-4082dUnpatched
CVE-2013-2644Apache HTTP Server Remote File Inclusion VulnerabilityN/A-4090dUnpatched
CVE-2014-7227Unpatched Remote Code Execution in Apache Commons PoolN/A-4092dUnpatched
CVE-2014-3659CVE-2014-3659 - "Apache Struts Vulnerability"N/A-4100dUnpatched
CVE-2014-5880Apache Log4ShellN/A-4282dUnpatched
CVE-2014-0070Zero-Day RCE in a Legacy Java LibraryN/A-4310dUnpatched