Apache
Security Scorecard
Score
9F
Total CVEs
943
Patch Rate
6%
55 patched
Avg Response
459d
days to patch
Critical Gaps
21
exploitable, no detection
Severity Breakdown
Critical4
High19
Medium67
Low0
Patch Status
Patched55 (6%)
Partial/Workaround5 (1%)
Unpatched883 (94%)
CVEs (949)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2013-4528 | Apache Lucene | N/A | - | 4397d | Unpatched |
| CVE-2013-4417 | Apache HTTP Server Remote File Inclusion Vulnerability | N/A | - | 4397d | Unpatched |
| CVE-2013-6379 | Apache HTTP Server Remote File Inclusion Vulnerability | N/A | - | 4404d | Unpatched |
| CVE-2013-1894 | Apache Log4j Remote Code Execution Vulnerability | N/A | - | 4406d | Unpatched |
| CVE-2013-6377 | Apache HTTP Server Remote Code Execution Vulnerability | N/A | - | 4407d | Unpatched |
| CVE-2013-5689 | Unpatched Remote Code Execution in a Legacy Java Logging Library | N/A | - | 4424d | Unpatched |
| CVE-2013-4349 | CVE-2013-4349 | N/A | - | 4427d | Unpatched |
| CVE-2013-2749 | CVE-2013-2749 - "Unsorted Deserialization" | N/A | - | 4447d | Unpatched |
| CVE-2012-2256 | Unspecified | N/A | - | 4451d | Unpatched |
| CVE-2011-4383 | Unspecified | N/A | - | 4459d | Unpatched |