Jserv

Vendor:

First CVE: Oct 5, 2011 · Active for 14 years

1
Total CVEs
Bottom 1%
1.0
Avg CVEs / Year
Bottom 1%
2.1
Avg CVSS
Bottom 1%
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Jserv over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 5, 2011
14 years ago
Most Recent CVE
Oct 5, 2011
5,406 days ago

CVE Severity & Scoring

Jserv1 CVEs
All CVEs352,231 CVEs
Low
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown1 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown1 (100.0%)
User Interaction
None0 (0.0%)
Unknown1 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown1 (100.0%)

Top CVEs

Signals from CVEs in this product scope (1 CVEs).

1 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The default configuration of the jserv-status handler in jserv.conf in Apache JServ 1.1.2 includes an "allow from 127.0.0.1" line, which allows local users to discover JDBC passwor
Oct 5, 20112.113NONO

Exploit Exposure

Signals from CVEs in this product scope (1 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (1 CVEs).

Media Mentions

Signals from CVEs in this product scope (1 CVEs).

Top CNAs Publishing CVEs For Jserv

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
1.1.212.10.6%00