Cyber Security Works Pvt. Ltd.
First CVE: Jun 4, 2021Active for: 5 years
11
CVEs Published
More CVEs Published than 28% of tracked CNAs
5.5
Avg CVEs / Year
More Avg CVEs / Year than 34% of tracked CNAs
6.3
Avg CVSS Score
Higher Avg CVSS Score than 19% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Trends Over Time
The number and severity of CVEs published by Cyber Security Works Pvt. Ltd. over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 4, 2021
5 years ago
Most Recent CVE
Oct 17, 2022
1,376 days ago
Top CVEs
All CVEs published by Cyber Security Works Pvt. Ltd. as a CNA, regardless of affected vendor or product.
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-33851MEDIUM A cross-site scripting (XSS) attack can cause arbitrary code (JavaScript) to run in a user's browser and can use an application as the vehicle for the attack. The XSS payload given | Mar 10, 2022 | 5.4 | 29 | NO | YES |
CVE-2022-28290MEDIUM Reflective Cross-Site Scripting vulnerability in WordPress Country Selector Plugin Version 1.6.5. The XSS payload executes whenever the user tries to access the country selector pa | Apr 25, 2022 | 6.1 | 25 | NO | YES |
CVE-2020-29324HIGH The DLink Router DIR-895L MFC v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain | Jun 4, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-29323HIGH The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacke | Jun 4, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-29322HIGH The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access | Jun 4, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-29321HIGH The D-Link router DIR-868L 3.01 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access | Jun 4, 2021 | 7.5 | 23 | NO | NO |
CVE-2022-28291MEDIUM Insufficiently Protected Credentials: An authenticated user with debug privileges can retrieve stored Nessus policy credentials from the “nessusd” process in cleartext via process | Oct 17, 2022 | 6.5 | 22 | NO | NO |
CVE-2021-33853MEDIUM A Cross-Site Scripting (XSS) attack can cause arbitrary code (javascript) to run in a user’s browser while the browser is connected to a trusted website. As the vehicle for the att | Mar 16, 2022 | 5.4 | 21 | NO | NO |
CVE-2021-33850MEDIUM There is a Cross-Site Scripting vulnerability in Microsoft Clarity version 0.3. The XSS payload executes whenever the user changes the clarity configuration in Microsoft Clarity ve | Nov 19, 2021 | 5.4 | 21 | NO | NO |
CVE-2021-33852MEDIUM A cross-site scripting (XSS) attack can cause arbitrary code (JavaScript) to run in a user's browser and can use an application as the vehicle for the attack. The XSS payload given | Mar 10, 2022 | 5.4 | 20 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA11 CVEs
64%
36%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network11 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (45.5%)
Unknown0 (0.0%)
Required6 (54.5%)
Privileges Required
Low6 (54.5%)
High0 (0.0%)
None5 (45.5%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (11 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
18.2% of CVEs· 99th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Cyber Security Works Pvt. Ltd. as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Cyber Security Works Pvt. Ltd. as a CNA — matched by CVE ID, not by organization name.