Cybellum

First CVE: Aug 24, 2022Active for: 4 years
2
CVEs Published
More CVEs Published than 6% of tracked CNAs
1.0
Avg CVEs / Year
Bottom 1%
6.3
Avg CVSS Score
Higher Avg CVSS Score than 18% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published by Cybellum over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 24, 2022
3 years ago
Most Recent CVE
Mar 5, 2024
871 days ago

Top CVEs

All CVEs published by Cybellum as a CNA, regardless of affected vendor or product.

2 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Command injection vulnerability in Linksys MR8300 router while Registration to DDNS Service. By specifying username and password, an attacker connected to the router's web interfac
Aug 24, 20228.822NONO
Maintenance Server, in Cybellum's QCOW air-gapped distribution (China Edition), versions 2.15.5 through 2.27, was compiled with a hard-coded private cryptographic key. An attacke
Mar 5, 20243.816NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA2 CVEs
Severity distribution among all CVEs352,294 CVEs
LowHigh
Attack Vector
Local2 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (50.0%)
High1 (50.0%)
Unknown0 (0.0%)
User Interaction
None1 (50.0%)
Unknown0 (0.0%)
Required1 (50.0%)
Privileges Required
Low1 (50.0%)
High1 (50.0%)
None0 (0.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (2 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Cybellum as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Cybellum as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs