Jabber

Vendor:

First CVE: Jun 26, 2013 · Active for 13 years

34
Total CVEs
More Total CVEs than 96% of tracked products
3.8
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 34% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Jabber over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 26, 2013
13 years ago
Most Recent CVE
Sep 15, 2023
1,045 days ago

CVE Severity & Scoring

Jabber34 CVEs
All CVEs352,713 CVEs
MediumHighCritical
Attack Vector
Local6 (17.6%)
Network24 (70.6%)
Unknown4 (11.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low27 (79.4%)
High3 (8.8%)
Unknown4 (11.8%)
User Interaction
None21 (61.8%)
Unknown4 (11.8%)
Required9 (26.5%)
Privileges Required
Low21 (61.8%)
High2 (5.9%)
None7 (20.6%)
Unknown4 (11.8%)

Top CVEs

Signals from CVEs in this product scope (34 CVEs).

34 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A vulnerability in Cisco Jabber for Windows could allow an authenticated, remote attacker to execute arbitrary code. The vulnerability is due to improper validation of message cont
Sep 4, 20208.857NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying oper
Jan 7, 20219.931NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying oper
Dec 11, 20209.931NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the und
Mar 24, 20219.930NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying oper
Dec 11, 20209.930NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying oper
Dec 11, 20209.929NONO
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying oper
Dec 11, 20209.929NONO
A vulnerability in the application protocol handling features of Cisco Jabber for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands. The vulnera
Sep 4, 20208.829NONO
A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Jabber for Windows could allow an authenticated, local attacker to perform a DLL preloading att
Jul 4, 20197.325NONO
A vulnerability in Cisco Jabber Client Framework (JCF) for Mac Software, installed as part of the Cisco Jabber for Mac client, could allow an authenticated, local attacker to execu
Sep 5, 20197.824NONO

Exploit Exposure

Signals from CVEs in this product scope (34 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (34 CVEs).

Media Mentions

Signals from CVEs in this product scope (34 CVEs).

Top CNAs Publishing CVEs For Jabber

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.7\(5\)15.02.6%00
9.7\(4\)15.02.6%00
9.7\(3\)15.02.6%00
9.7\(2\)15.02.6%00
9.7\(1\)15.02.6%00
9.7\(0\)15.02.6%00
9.6\(3\)15.02.6%00
9.6\(2\)15.02.6%00
9.6\(1\)15.02.6%00
9.6\(0\)15.02.6%00
9.2\(.0\)14.35.5%00
9.214.35.5%00
9.1\(.5\)14.35.5%00
9.1\(.4\)14.35.5%00
9.1\(.3\)14.35.5%00
9.1\(.2\)14.35.5%00
9.1\(.1\)14.35.5%00
9.1\(.0\)14.35.5%00
9.114.35.5%00
9.0\(.5\)14.35.5%00