Appsync
Vendor:
First CVE: Dec 30, 2014 · Active for 11 years
5
Total CVEs
More Total CVEs than 77% of tracked products
1.7
Avg CVEs / Year
Higher CVE frequency than 59% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 50% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Appsync over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 30, 2014
11 years ago
Most Recent CVE
Sep 27, 2023
1,031 days ago
CVE Severity & Scoring
Appsync5 CVEs
20%
60%
20%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (40.0%)
Network2 (40.0%)
Unknown1 (20.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (80.0%)
High0 (0.0%)
Unknown1 (20.0%)
User Interaction
None4 (80.0%)
Unknown1 (20.0%)
Required0 (0.0%)
Privileges Required
Low2 (40.0%)
High0 (0.0%)
None2 (40.0%)
Unknown1 (20.0%)
Top CVEs
Signals from CVEs in this product scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-8015CRITICAL EMC AppSync (all versions prior to 3.5) contains a SQL injection vulnerability that could potentially be exploited by malicious users to compromise the affected system. | Sep 12, 2017 | 9.8 | 31 | NO | NO |
CVE-2017-14376HIGH EMC AppSync Server prior to 3.5.0.1 contains database accounts with hardcoded passwords that could potentially be exploited by malicious users to compromise the affected system. | Nov 1, 2017 | 7.8 | 25 | NO | NO |
CVE-2017-8018HIGH EMC AppSync host plug-in versions 3.5 and below (Windows platform only) includes a denial of service (DoS) vulnerability that could potentially be exploited by malicious users to c | Oct 3, 2017 | 7.5 | 24 | NO | NO |
CVE-2023-32458HIGH
Dell AppSync, versions 4.4.0.0 to 4.6.0.0 including Service Pack releases, contains an improper access control vulnerability in Embedded Service Enabler component. A local malicio | Sep 27, 2023 | 7.8 | 21 | NO | NO |
CVE-2014-4634MEDIUM Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application wi | Dec 30, 2014 | 4.6 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (5 CVEs).
Media Mentions
Signals from CVEs in this product scope (5 CVEs).
Top CNAs Publishing CVEs For Appsync
Top CWEs
Versions
No cataloged versions.