Common Services Platform Collector

Vendor:

First CVE: Mar 13, 2019 · Active for 7 years

19
Total CVEs
More Total CVEs than 95% of tracked products
4.8
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 29% of tracked products
5.3%
KEV Rate
Higher KEV Rate than 98% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Common Services Platform Collector over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 13, 2019
7 years ago
Most Recent CVE
Jan 8, 2025
565 days ago

CVE Severity & Scoring

Common Services Platform Collector19 CVEs
All CVEs352,785 CVEs
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network19 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (31.6%)
Unknown0 (0.0%)
Required13 (68.4%)
Privileges Required
Low4 (21.1%)
High4 (21.1%)
None11 (57.9%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (19 CVEs).

19 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai
Dec 10, 202110.099YESYES
A vulnerability in the Cisco Common Services Platform Collector (CSPC) could allow an unauthenticated, remote attacker to access an affected device by using an account that has a d
Mar 13, 20199.834NONO
A vulnerability in the configuration dashboard of Cisco Common Services Platform Collector (CSPC) could allow an authenticated, remote attacker to execute arbitrary code. This vuln
Jun 4, 20217.224NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.122NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO
Multiple vulnerabilities in the web-based management interface of Cisco Common Services Platform Collector (CSPC) Software could allow an unauthenticated, remote attacker to conduc
May 27, 20226.121NONO

Exploit Exposure

Signals from CVEs in this product scope (19 CVEs).

CISA KEV
1 CVE
5.3% of CVEs· 98th percentile
Metasploit
1 CVE
5.3% of CVEs· 97th percentile
Nuclei
1 CVE
5.3% of CVEs· 97th percentile
ExploitDB
1 CVE
5.3% of CVEs· 86th percentile

Social Chatter

Signals from CVEs in this product scope (19 CVEs).

Media Mentions

Signals from CVEs in this product scope (19 CVEs).

Top CNAs Publishing CVEs For Common Services Platform Collector

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
30.1.1-035.40.3%00
2.11.0.335.40.3%00
2.11.0.235.40.3%00
2.11.0.135.40.3%00
2.1135.40.3%00
002.010\(000.000\)110.0100.0%11
002.009\(001.002\)110.0100.0%11
002.009\(001.001\)110.0100.0%11
002.009\(001.000\)110.0100.0%11
002.009\(000.002\)110.0100.0%11
002.009\(000.001\)110.0100.0%11
002.009\(000.000\)110.0100.0%11