Banking Virtual Account Management
Vendor:
First CVE: Apr 17, 2019 · Active for 7 years
39
Total CVEs
More Total CVEs than 98% of tracked products
7.8
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 72% of tracked products
2.6%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Banking Virtual Account Management over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 17, 2019
7 years ago
Most Recent CVE
Apr 18, 2023
1,197 days ago
CVE Severity & Scoring
Banking Virtual Account Management39 CVEs
21%
54%
26%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (5.1%)
Network37 (94.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (48.7%)
High20 (51.3%)
Unknown0 (0.0%)
User Interaction
None31 (79.5%)
Unknown0 (0.0%)
Required8 (20.5%)
Privileges Required
Low2 (5.1%)
High7 (17.9%)
None30 (76.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (39 CVEs).
39 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-22963CRITICAL In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a r | Apr 1, 2022 | 9.8 | 99 | YES | YES |
CVE-2021-21351CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arb | Mar 23, 2021 | 9.1 | 82 | NO | YES |
CVE-2020-26217HIGH XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processe | Nov 16, 2020 | 8.8 | 82 | NO | YES |
CVE-2021-21345CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficien | Mar 23, 2021 | 9.9 | 80 | NO | YES |
CVE-2021-21346CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execu | Mar 23, 2021 | 9.8 | 74 | NO | NO |
CVE-2021-21344CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execu | Mar 23, 2021 | 9.8 | 73 | NO | NO |
CVE-2021-21342CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time co | Mar 23, 2021 | 9.1 | 55 | NO | NO |
CVE-2021-21349HIGH XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data f | Mar 23, 2021 | 8.6 | 53 | NO | NO |
CVE-2021-21343HIGH XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time co | Mar 23, 2021 | 7.5 | 50 | NO | NO |
CVE-2021-21350CRITICAL XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitr | Mar 23, 2021 | 9.8 | 38 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (39 CVEs).
CISA KEV
1 CVE
2.6% of CVEs· 98th percentile
Metasploit
1 CVE
2.6% of CVEs· 97th percentile
Nuclei
4 CVEs
10.3% of CVEs· 97th percentile
ExploitDB
1 CVE
2.6% of CVEs· 85th percentile
Social Chatter
Signals from CVEs in this product scope (39 CVEs).
Media Mentions
Signals from CVEs in this product scope (39 CVEs).
Top CNAs Publishing CVEs For Banking Virtual Account Management
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 14.7 | 6 | 5.8 | 0.5% | 0 | 0 |
| 14.6 | 6 | 5.8 | 0.5% | 0 | 0 |
| 14.5.0 | 30 | 8.3 | 23.8% | 0 | 3 |
| 14.5 | 8 | 6.8 | 14.0% | 1 | 1 |
| 14.4.0 | 1 | 7.5 | 3.9% | 0 | 0 |
| 14.3.0 | 32 | 8.3 | 22.7% | 0 | 3 |
| 14.2.0 | 30 | 8.3 | 23.8% | 0 | 3 |
| 14.2 | 1 | 9.8 | 9.4% | 0 | 0 |
| 14.1.0 | 1 | 7.5 | 3.9% | 0 | 0 |