Enterprise Linux Server Supplementary

Vendor:

First CVE: Oct 1, 2013 · Active for 12 years

84
Total CVEs
More Total CVEs than 99% of tracked products
16.8
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 52% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Enterprise Linux Server Supplementary over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 1, 2013
12 years ago
Most Recent CVE
May 23, 2017
3,353 days ago

CVE Severity & Scoring

Enterprise Linux Server Supplementary84 CVEs
All CVEs353,173 CVEs
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network13 (15.5%)
Unknown71 (84.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (14.3%)
High1 (1.2%)
Unknown71 (84.5%)
User Interaction
None5 (6.0%)
Unknown71 (84.5%)
Required8 (9.5%)
Privileges Required
Low1 (1.2%)
High0 (0.0%)
None12 (14.3%)
Unknown71 (84.5%)

Top CVEs

Signals from CVEs in this product scope (84 CVEs).

84 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain clear
Oct 15, 20143.478NOYES
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or caus
Apr 14, 201510.061NOYES
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers t
Apr 14, 201510.033NONO
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or caus
Apr 14, 201510.032NONO
Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.94 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
May 14, 20169.831NONO
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or caus
Apr 14, 201510.031NONO
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or caus
Apr 14, 201510.031NONO
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or caus
Apr 14, 201510.031NONO
Multiple unspecified vulnerabilities in Google Chrome before 53.0.2785.143 allow remote attackers to cause a denial of service or possibly have other impact via unknown vectors.
May 23, 20179.830NONO
extensions/renderer/gc_callback.cc in Google Chrome before 50.0.2661.94 does not prevent fallback execution once the Garbage Collection callback has started, which allows remote at
May 14, 20169.830NONO

Exploit Exposure

Signals from CVEs in this product scope (84 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
1.2% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
1.2% of CVEs· 85th percentile

Social Chatter

Signals from CVEs in this product scope (84 CVEs).

Media Mentions

Signals from CVEs in this product scope (84 CVEs).

Top CNAs Publishing CVEs For Enterprise Linux Server Supplementary

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
7.013.4100.0%01
6.7.z27.22.9%00
6.4.z17.20.4%00
6.417.20.4%00
6.1.z16.82.3%00
6.0837.54.8%02
5.0258.411.6%02