Endpoint Vulnerability Report
종합 취약점 현황 분석
CVSS Score 기준:
Critical: 9.0 이상
High: 7.0-8.9
Medium: 4.0-6.9
Low: 0.1-3.9
수집일: 2026-01-13
Total Endpoints
5
Total CVEs
2861
Critical CVEs
599
High CVEs
1047
Medium CVEs
1104
Low CVEs
102
Critical Risk Endpoints
1개 이상 Critical CVE 보유5
High Risk Endpoints
High CVE만 보유 (Critical 없음)0
Medium Risk Endpoints
Medium CVE만 보유0
Low Risk Endpoints
Low CVE만 보유0
Endpoint Risk Distribution
OS별 취약점 분포
OS별 상세 통계
| OS | Endpoints | Critical | High |
|---|---|---|---|
| LINUX | 3 | 602 | 1024 |
| WINDOWS | 2 | 10 | 124 |
CISA KEV - 실제 공격에 사용 중인 취약점
16 / 1488 KEVs 발견
CISA KEV 총 수
1488
조직 내 발견
16
영향받는 호스트
21
랜섬웨어 연관
304
최근 30일 추가
6
경고: 아래 16개의 취약점은 CISA에서 실제 공격에 사용되고 있다고 공식 지정한 취약점입니다.
즉시 패치가 필요합니다.
| CVE ID | Vendor / Product | Description | Ransomware | 추가일 | 영향받는 호스트 | Actions | ||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
CVE-2025-32463
CVSS: 9.3 |
Sudo
Sudo |
Sudo contains an inclusion of functionality from untrusted control sphere vulnerability. This vulnerability could allow local attacker to leverage sud... | - | 2025-09-29 | 2 | |||||||||||||||||||
영향받는 호스트 (2)
Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
|
||||||||||||||||||||||||
|
CVE-2025-48384
CVSS: 8.0 |
Git
Git |
Git contains a link following vulnerability that stems from Git’s inconsistent handling of carriage return characters in configuration files. | - | 2025-08-25 | 5 | |||||||||||||||||||
영향받는 호스트 (5)
Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
|
||||||||||||||||||||||||
|
CVE-2024-9680
CVSS: 9.8 |
Mozilla
Firefox |
Mozilla Firefox and Firefox ESR contain a use-after-free vulnerability in Animation timelines that allows for code execution in the content process. | - | 2024-10-15 | 1 | |||||||||||||||||||
|
CVE-2023-5217
CVSS: 8.8 |
Google
Chromium libvpx |
Google Chromium libvpx contains a heap buffer overflow vulnerability in vp8 encoding that allows a remote attacker to potentially exploit heap corrupt... | - | 2023-10-02 | 1 | |||||||||||||||||||
|
CVE-2023-41993
CVSS: 8.8 |
Apple
Multiple Products |
Apple iOS, iPadOS, macOS, and Safari WebKit contain an unspecified vulnerability that leads to code execution when processing maliciously crafted web ... | - | 2023-09-25 | 1 | |||||||||||||||||||
|
CVE-2023-4863
CVSS: 8.8 |
Google
Chromium WebP |
Google Chromium WebP contains a heap-based buffer overflow vulnerability that allows a remote attacker to perform an out-of-bounds memory write via a ... | - | 2023-09-13 | 1 | |||||||||||||||||||
|
CVE-2015-4495
CVSS: 8.8 |
Mozilla
Firefox |
Moxilla Firefox allows remote attackers to bypass the Same Origin Policy to read arbitrary files or gain privileges. | - | 2022-05-25 | 1 | |||||||||||||||||||
|
CVE-2019-11707
CVSS: 8.8 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird contain a type confusion vulnerability that can occur when manipulating JavaScript objects due to issues in Array.pop,... | - | 2022-05-23 | 1 | |||||||||||||||||||
|
CVE-2019-11708
CVSS: 10.0 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird contain a sandbox escape vulnerability that could result in remote code execution. | - | 2022-05-23 | 1 | |||||||||||||||||||
|
CVE-2013-1690
CVSS: 8.8 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to ... | - | 2022-03-28 | 1 | |||||||||||||||||||
|
CVE-2022-26486
CVSS: 9.6 |
Mozilla
Firefox |
Mozilla Firefox contains a use-after-free vulnerability in WebGPU IPC Framework which can be exploited to perform arbitrary code execution. | - | 2022-03-07 | 1 | |||||||||||||||||||
|
CVE-2022-26485
CVSS: 8.8 |
Mozilla
Firefox |
Mozilla Firefox contains a use-after-free vulnerability in XSLT parameter processing which can be exploited to perform arbitrary code execution. | - | 2022-03-07 | 1 | |||||||||||||||||||
|
CVE-2013-1675
CVSS: 6.5 |
Mozilla
Firefox |
Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, whi... | - | 2022-03-03 | 1 | |||||||||||||||||||
|
CVE-2020-6819
CVSS: 8.1 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird contain a race condition vulnerability when running the nsDocShell destructor under certain conditions. The race condi... | - | 2021-11-03 | 1 | |||||||||||||||||||
|
CVE-2020-6820
CVSS: 8.1 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird contain a race condition vulnerability when handling a ReadableStream under certain conditions. The race condition cre... | - | 2021-11-03 | 1 | |||||||||||||||||||
|
CVE-2019-17026
CVSS: 8.8 |
Mozilla
Firefox and Thunderbird |
Mozilla Firefox and Thunderbird contain a type confusion vulnerability due to incorrect alias information in the IonMonkey JIT compiler when setting a... | - | 2021-11-03 | 1 | |||||||||||||||||||
Last updated: 2026-01-20 10:40 UTC
|
CISA KEV Catalog
취약점 유형별 영향 범위 (CWE)
CWE 분류 정보가 아직 수집되지 않았습니다.
All Endpoints (5)
| Endpoint | OS Type | Risk Level | Score | CVE Count | Critical | High | Medium | Low | Actions |
|---|---|---|---|---|---|---|---|---|---|
| inbridge-ubt-24 | LINUX | CRITICAL | 10.0 | 2364 | 581 | 756 | 963 | 56 | |
| in-bridge-40 | LINUX | CRITICAL | 9.8 | 392 | 15 | 214 | 133 | 24 | |
| DESKTOP-FNUMV3U | WINDOWS | CRITICAL | 9.8 | 195 | 9 | 107 | 49 | 30 | |
| inbridge-42 | LINUX | CRITICAL | 9.8 | 142 | 6 | 54 | 61 | 16 | |
| BOOK-R0BE6S1NC3 | WINDOWS | CRITICAL | 9.9 | 25 | 1 | 17 | 6 | 1 |