$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
공급사별 악용 확인

Apache

CISA 가 실제 악용을 확인해 등재한 Apache 제품 취약점입니다. 여기 있다는 것은 이미 공격에 쓰였다는 뜻이고, 없다는 것이 안전하다는 뜻은 아닙니다.

악용 확인 40건랜섬웨어 사용 8건제품 21종기한 남은 것 0건

등재된 제품

21종

Tomcat 6ActiveMQ 3HTTP Server 4OFBiz 3HugeGraph-Server 1Flink 1Superset 1RocketMQ 1Log4j2 2Spark 1CouchDB 1APISIX 1Kylin 1Struts 5Struts 1 2Struts 2 1Airflow 1Airflow's Experimental API 1Solr 2Apache 1Shiro 1

전체 목록

Apache · 40건

CVE등재일제품취약점 이름악용 확률심각도조치 기한
CVE-2026-344862026-08-04
2개월 전
TomcatApache Tomcat Missing Encryption of Sensitive Data Vulnerability6.6%높음7.52026-08-07
CVE-2026-341972026-04-16
5개월 전
ActiveMQApache ActiveMQ Improper Input Validation Vulnerability15.5%높음8.82026-04-30
CVE-2024-384752025-05-01
1년 전
HTTP ServerApache HTTP Server Improper Escaping of Output Vulnerability100.0%심각9.12025-05-22
CVE-2025-248132025-04-01
1년 전
TomcatApache Tomcat Path Equivalence Vulnerability99.9%심각9.82025-04-22
CVE-2024-451952025-02-04
1년 전
OFBizApache OFBiz Forced Browsing Vulnerability100.0%높음7.52025-02-25
CVE-2024-273482024-09-18
2년 전
HugeGraph-ServerApache HugeGraph-Server Improper Access Control Vulnerability99.2%심각9.82024-10-09
CVE-2024-388562024-08-27
2년 전
OFBizApache OFBiz Incorrect Authorization Vulnerability99.4%심각9.82024-09-17
CVE-2024-321132024-08-07
2년 전
OFBizApache OFBiz Path Traversal Vulnerability99.9%심각9.82024-08-28
CVE-2020-175192024-05-23
2년 전
FlinkApache Flink Improper Access Control Vulnerability97.8%높음7.52024-06-13
CVE-2023-275242024-01-08
2년 전
SupersetApache Superset Insecure Default Initialization of Resource Vulnerabil…97.4%심각9.82024-01-29
CVE-2023-46604 랜섬웨어 악용2023-11-02
2년 전
ActiveMQApache ActiveMQ Deserialization of Untrusted Data Vulnerability99.9%심각9.82023-11-23
CVE-2023-332462023-09-06
3년 전
RocketMQApache RocketMQ Command Execution Vulnerability96.6%심각9.82023-09-27
CVE-2016-87352023-05-12
3년 전
TomcatApache Tomcat Remote Code Execution Vulnerability90.3%심각9.82023-06-02
CVE-2021-45046 랜섬웨어 악용2023-05-01
3년 전
Log4j2Apache Log4j2 Deserialization of Untrusted Data Vulnerability100.0%심각9.02023-05-22
CVE-2022-338912023-03-07
3년 전
SparkApache Spark Command Injection Vulnerability93.2%높음8.82023-03-28
CVE-2022-247062022-08-25
4년 전
CouchDBApache CouchDB Insecure Default Initialization of Resource Vulnerabili…92.5%심각9.82022-09-15
CVE-2022-241122022-08-25
4년 전
APISIXApache APISIX Authentication Bypass Vulnerability96.1%심각9.82022-09-15
CVE-2020-19562022-03-25
4년 전
KylinApache Kylin OS Command Injection Vulnerability97.3%높음8.82022-04-15
CVE-2017-126172022-03-25
4년 전
TomcatApache Tomcat Remote Code Execution Vulnerability100.0%높음8.12022-04-15
CVE-2017-12615 랜섬웨어 악용2022-03-25
4년 전
TomcatApache Tomcat on Windows Remote Code Execution Vulnerability99.6%높음8.12022-04-15
CVE-2013-22512022-03-25
4년 전
StrutsApache Struts Improper Input Validation Vulnerability100.0%심각9.82022-04-15
CVE-2020-19382022-03-03
4년 전
TomcatApache Tomcat Improper Privilege Management Vulnerability99.3%심각9.82022-03-17
CVE-2017-97912022-02-10
4년 전
Struts 1Apache Struts 1 Improper Input Validation Vulnerability98.9%심각9.82022-08-10
CVE-2016-30882022-02-10
4년 전
ActiveMQApache ActiveMQ Improper Input Validation Vulnerability98.5%심각9.82022-08-10
CVE-2012-03912022-01-21
4년 전
Struts 2Apache Struts 2 Improper Input Validation Vulnerability75.6%심각9.82022-07-21
CVE-2006-15472022-01-21
4년 전
Struts 1Apache Struts 1 ActionForm Denial-of-Service Vulnerability54.6%높음7.52022-07-21
CVE-2020-119782022-01-18
4년 전
AirflowApache Airflow Command Injection99.2%높음8.82022-07-18
CVE-2020-139272022-01-18
4년 전
Airflow's Experimental APIApache Airflow's Experimental API Authentication Bypass99.8%심각9.82022-07-18
CVE-2019-01932021-12-10
4년 전
SolrApache Solr DataImportHandler Code Injection Vulnerability83.5%높음7.22022-06-10
CVE-2021-44228 랜섬웨어 악용2021-12-10
4년 전
Log4j2Apache Log4j2 Remote Code Execution Vulnerability100.0%심각10.02021-12-24
CVE-2021-40438 랜섬웨어 악용2021-12-01
4년 전
ApacheApache HTTP Server-Side Request Forgery (SSRF)100.0%심각9.02021-12-15
CVE-2019-175582021-11-03
4년 전
SolrApache Solr VelocityResponseWriter Plug-In Remote Code Execution Vulne…98.6%높음7.52022-05-03
CVE-2020-175302021-11-03
4년 전
StrutsApache Struts Remote Code Execution Vulnerability95.9%심각9.82022-05-03
CVE-2017-98052021-11-03
4년 전
StrutsApache Struts Deserialization of Untrusted Data Vulnerability99.4%높음8.12022-05-03
CVE-2018-117762021-11-03
4년 전
StrutsApache Struts Remote Code Execution Vulnerability100.0%높음8.12022-05-03
CVE-2017-5638 랜섬웨어 악용2021-11-03
4년 전
StrutsApache Struts Remote Code Execution Vulnerability100.0%심각9.82022-05-03
CVE-2021-42013 랜섬웨어 악용2021-11-03
4년 전
HTTP ServerApache HTTP Server Path Traversal Vulnerability100.0%심각9.82021-11-17
CVE-2021-41773 랜섬웨어 악용2021-11-03
4년 전
HTTP ServerApache HTTP Server Path Traversal Vulnerability100.0%심각9.82021-11-17
CVE-2019-02112021-11-03
4년 전
HTTP ServerApache HTTP Server Privilege Escalation Vulnerability65.0%높음7.82022-05-03
CVE-2016-44372021-11-03
4년 전
ShiroApache Shiro Code Execution Vulnerability93.0%심각9.82022-05-03

🏢 다른 공급사도 보기

전체 공급사 ›
이 목록은 CISA KEV 에 등재된 것만 보여줍니다. Apache 의 전체 취약점이 아니며, 여기 없다고 해서 다른 취약점이 없다는 뜻이 아닙니다. 공급사 공식 보안 공지를 함께 확인하세요.