Secure Global Desktop
Vendor:
First CVE: Jun 15, 2013 · Active for 13 years
33
Total CVEs
More Total CVEs than 97% of tracked products
4.7
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 49% of tracked products
3.0%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Secure Global Desktop over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 15, 2013
13 years ago
Most Recent CVE
Oct 20, 2021
1,742 days ago
CVE Severity & Scoring
Secure Global Desktop33 CVEs
52%
15%
33%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network28 (84.8%)
Unknown4 (12.1%)
Physical0 (0.0%)
Adjacent Network1 (3.0%)
Attack Complexity
Low21 (63.6%)
High8 (24.2%)
Unknown4 (12.1%)
User Interaction
None21 (63.6%)
Unknown4 (12.1%)
Required8 (24.2%)
Privileges Required
Low4 (12.1%)
High0 (0.0%)
None25 (75.8%)
Unknown4 (12.1%)
Top CVEs
Signals from CVEs in this product scope (33 CVEs).
33 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-40438CRITICAL A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier. | Sep 16, 2021 | 9.0 | 97 | YES | YES |
CVE-2019-0227HIGH A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projec | May 1, 2019 | 7.5 | 84 | NO | YES |
CVE-2018-11784MEDIUM When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, 8.5.0 to 8.5.33 and 7.0.23 to 7.0.90 returned a redirect to a directory (e.g. redirecting to '/foo/' when the | Oct 4, 2018 | 4.3 | 83 | NO | YES |
CVE-2019-10092MEDIUM In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page. An attacker could cause the link on the error page to be m | Sep 26, 2019 | 6.1 | 82 | NO | YES |
CVE-2014-0226MEDIUM Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtai | Jul 20, 2014 | 6.8 | 75 | NO | YES |
CVE-2021-33037MEDIUM Apache Tomcat 10.0.0-M1 to 10.0.6, 9.0.0.M1 to 9.0.46 and 8.5.0 to 8.5.66 did not correctly parse the HTTP transfer-encoding request header in some circumstances leading to the pos | Jul 12, 2021 | 5.3 | 61 | NO | NO |
CVE-2017-9788CRITICAL In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value placeholder in [Proxy-]Authorization headers of type 'Digest' was not initialized or reset before or between succes | Jul 13, 2017 | 9.1 | 60 | NO | NO |
CVE-2021-3449MEDIUM An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms | Mar 25, 2021 | 5.9 | 57 | NO | NO |
CVE-2017-7668HIGH The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input str | Jun 20, 2017 | 7.5 | 56 | NO | NO |
CVE-2018-11763MEDIUM In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout com | Sep 25, 2018 | 5.9 | 47 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (33 CVEs).
CISA KEV
1 CVE
3.0% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
4 CVEs
12.1% of CVEs· 97th percentile
ExploitDB
4 CVEs
12.1% of CVEs· 86th percentile
Social Chatter
Signals from CVEs in this product scope (33 CVEs).
Media Mentions
Signals from CVEs in this product scope (33 CVEs).
Top CNAs Publishing CVEs For Secure Global Desktop
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.6 | 11 | 7.9 | 24.3% | 1 | 1 |
| 5.5 | 4 | 6.5 | 46.6% | 0 | 2 |
| 5.4 | 12 | 6.5 | 32.8% | 0 | 3 |
| 5.3 | 4 | 8.1 | 38.0% | 0 | 0 |
| 5.2 | 4 | 7.8 | 2.9% | 0 | 0 |
| 5.1 | 2 | 5.9 | 55.9% | 0 | 1 |
| 5.0 | 2 | 5.9 | 55.9% | 0 | 1 |
| 4.71 | 4 | 7.1 | 29.9% | 0 | 1 |
| 4.7 | 1 | 9.6 | 1.7% | 0 | 0 |
| 4.63 | 3 | 7.2 | 39.1% | 0 | 1 |
| 4.4 | 1 | 6.1 | 20.5% | 0 | 1 |