Cyber Security Agency of Singapore

First CVE: Jun 24, 2025Active for: 1 year
21
CVEs Published
More CVEs Published than 41% of tracked CNAs
10.5
Avg CVEs / Year
More Avg CVEs / Year than 55% of tracked CNAs
6.9
Avg CVSS Score
Higher Avg CVSS Score than 37% of tracked CNAs
4.8%
In CISA KEV
Higher KEV Rate than 96% of tracked CNAs

Trends Over Time

The number and severity of CVEs published by Cyber Security Agency of Singapore over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 24, 2025
12 months ago
Most Recent CVE
Jul 13, 2026
11 days ago

Top CVEs

All CVEs published by Cyber Security Agency of Singapore as a CNA, regardless of affected vendor or product.

21 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload arbitrary files to any location on the mail server, potentially enabling remote code
Dec 29, 202510.098YESYES
Successful exploitation of the SQL injection vulnerability could allow an unauthenticated remote attacker to execute arbitrary SQL commands on the vulnerable service when it is exp
Jan 12, 20269.867NOYES
Successful exploitation of the vulnerability could allow an attacker to inject commands with root privileges on the access point, potentially leading to the loss of confidentiality
Jul 16, 20259.842NONO
Successful exploitation of the integer overflow vulnerability could allow an attacker to achieve system-level access to the affected software.
Jul 13, 20267.837NONO
Successful exploitation of the vulnerability could allow an unauthenticated attacker to obtain a valid session ID with administrator privileges by spoofing the login request, poten
Jul 16, 20259.836NONO
Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and grantin
Apr 27, 20267.034NONO
Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application.
Apr 27, 20266.632NONO
Successful exploitation of the vulnerability could allow an attacker with local network access to send a specially crafted URL to access certain administration functions without lo
Dec 19, 20258.832NONO
Successful exploitation of the SQL injection vulnerability could allow a remote authenticated attacker to execute arbitrary commands via a specific interface, potentially enabling
May 13, 20267.229NONO
Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload firmware through a public update page, potentially leading to backdoor installation o
Jun 24, 20259.629NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA21 CVEs
Severity distribution among all CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local4 (19.0%)
Network8 (38.1%)
Unknown0 (0.0%)
Physical1 (4.8%)
Adjacent Network8 (38.1%)
Attack Complexity
Low13 (61.9%)
High8 (38.1%)
Unknown0 (0.0%)
User Interaction
None16 (76.2%)
Unknown0 (0.0%)
Required5 (23.8%)
Privileges Required
Low3 (14.3%)
High4 (19.0%)
None14 (66.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (21 CVEs).

CISA KEV
1 CVE
4.8% of CVEs· 96th percentile
Metasploit
1 CVE
4.8% of CVEs· 96th percentile
Nuclei
2 CVEs
9.5% of CVEs· 95th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Cyber Security Agency of Singapore as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Cyber Security Agency of Singapore as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs