Cloud Insights Acquisition Unit
Vendor:
First CVE: Jan 19, 2022 · Active for 4 years
53
Total CVEs
More Total CVEs than 98% of tracked products
17.7
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
5.2
Avg CVSS
Higher Avg CVSS than 12% of tracked products
1.9%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Cloud Insights Acquisition Unit over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 19, 2022
4 years ago
Most Recent CVE
Jan 16, 2024
924 days ago
CVE Severity & Scoring
Cloud Insights Acquisition Unit53 CVEs
26%
58%
15%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local2 (3.8%)
Network51 (96.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low31 (58.5%)
High22 (41.5%)
Unknown0 (0.0%)
User Interaction
None50 (94.3%)
Unknown0 (0.0%)
Required3 (5.7%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None53 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (53 CVEs).
53 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-41993HIGH The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that t | Sep 21, 2023 | 8.8 | 82 | YES | NO |
CVE-2022-34169HIGH The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This can be used to corrupt Java class files generated b | Jul 19, 2022 | 7.5 | 70 | NO | NO |
CVE-2020-36518HIGH jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects. | Mar 11, 2022 | 7.5 | 28 | NO | NO |
CVE-2022-21476HIGH Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u | Apr 19, 2022 | 7.5 | 27 | NO | NO |
CVE-2024-20918HIGH Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected | Jan 16, 2024 | 7.4 | 24 | NO | NO |
CVE-2024-20952HIGH Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affecte | Jan 16, 2024 | 7.4 | 23 | NO | NO |
CVE-2024-20932HIGH Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affecte | Jan 16, 2024 | 7.5 | 23 | NO | NO |
CVE-2022-21299MEDIUM Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, | Jan 19, 2022 | 5.3 | 23 | NO | NO |
CVE-2022-21293MEDIUM Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u | Jan 19, 2022 | 5.3 | 23 | NO | NO |
CVE-2023-21967MEDIUM Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u361, | Apr 18, 2023 | 5.9 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (53 CVEs).
CISA KEV
1 CVE
1.9% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (53 CVEs).
Media Mentions
Signals from CVEs in this product scope (53 CVEs).
Top CNAs Publishing CVEs For Cloud Insights Acquisition Unit
Top CWEs
Versions
No cataloged versions.