위협 인텔리전스 (1,991건)
실제 악용·공격 신호가 있는 취약점 — CISA KEV · Qualys RTI · 공개 PoC/익스플로잇 · 악용확률(EPSS) 높은 건 통합. Qualys 마지막 동기화 8시간 전.
CISA KEV
1,685
실제 공격 중
985
랜섬웨어
352
익스플로잇 공개
1,320
악용확률 50%↑
877
제로데이
13
| 긴급도 | CVE | 심각도 | 악용확률 | 신호 | 제품 · 악성코드 |
|---|---|---|---|---|---|
| 90 | CVE-2016-0034 | — | 99.3% | KEV랜섬PoC EPSS 99% | Microsoft Silverlight |
| 90 | CVE-2015-7645 | — | 99.3% | KEV랜섬PoC EPSS 99% | Adobe Flash Player |
| 90 | CVE-2021-36942 | — | 99.2% | KEV랜섬 EPSS 99% | Microsoft Windows |
| 90 | CVE-2014-1812 | — | 99.2% | KEV랜섬PoC EPSS 99% | Microsoft Windows |
| 90 | CVE-2016-0151 | — | 99.2% | KEV랜섬PoC EPSS 99% | Microsoft Client-Server Run-time Subsystem (CSRSS) |
| 90 | CVE-2010-1428 | — | 99.2% | KEV랜섬 EPSS 99% | Red Hat JBoss |
| 90 | CVE-2024-21338 | — | 99.1% | KEV랜섬PoC EPSS 99% | Microsoft Windows |
| 90 | CVE-2017-0101 | — | 99.0% | KEV랜섬PoC EPSS 99% | Microsoft Windows |
| 90 | CVE-2015-1701 | — | 99.0% | KEV랜섬PoC EPSS 99% | Microsoft Win32k |
| 90 | CVE-2022-29499 | — | 99.0% | KEV랜섬 EPSS 99% | Mitel MiVoice Connect |
| 90 | CVE-2021-22941 | — | 98.9% | KEV랜섬PoC EPSS 99% | Citrix ShareFile |
| 90 | CVE-2019-1367 | — | 98.9% | KEV랜섬PoC EPSS 99% | Microsoft Internet Explorer |
| 90 | CVE-2021-20023 | — | 98.9% | KEV랜섬 EPSS 99% | SonicWall SonicWall Email Security |
| 90 | CVE-2021-3493 | — T7.2 | 98.8% | KEV실공격익스공개기능적 EPSS 99% | Linux Kernel 🦠 CVE-2021-3493 (Exploit); Multiverze (Trojan) |
| 90 | CVE-2014-4404 | — T9.1 | 98.8% | KEV실공격PoC기능적 EPSS 99% | Apple OS X 🦠 MetaSploit (Hacktool); PowerSploit (Hacktool); ExploitPack (Hacktool); Beef (Hacktool); Heuristic (Malware); … |
| 90 | CVE-2023-5217 | — T9.1 | 98.8% | KEV실공격PoC기능적 EPSS 99% | Google Chromium libvpx 🦠 CVE-2023-4863 (Exploit); Hqwar (Dropper); Coper (Trojan); CVE-2023-38545 (Exploit); CVE-2023-44487 (Exploit) |
| 90 | CVE-2019-17026 | — T8.2 | 98.8% | KEV실공격PoC기능적 EPSS 99% | Mozilla Firefox and Thunderbird 🦠 CVE-2019-17026 (Exploit) |
| 90 | CVE-2024-29988 | — T8.2 | 98.7% | KEV실공격PoC기능적 EPSS 99% | Microsoft SmartScreen Prompt 🦠 CVE-2024-26234 (Exploit); CVE-2024-26229 (Exploit); Generic (Trojan); Heuristic (Malware); Generic (Malware);… |
| 90 | CVE-2013-3900 | — T8.2 | 98.7% | KEV실공격익스공개기능적 EPSS 99% | Microsoft WinVerifyTrust function 🦠 Generic (Rootkit); CVE-2013-3900 (Exploit); Conti (Ransomware) |
| 90 | CVE-2026-32201 | — T6.0 | 98.7% | KEV실공격익스공개기능적 EPSS 99% | Microsoft SharePoint Server |
| 90 | CVE-2023-21674 | — T8.4 | 98.6% | KEV실공격익스공개기능적 EPSS 99% | Microsoft Windows 🦠 CVE-2023-21752 (Exploit); CVE-2023-21746 (Exploit); CVE-2023-21768 (Exploit); Heuristic (Malware); Generic (E… |
| 90 | CVE-2023-4762 | — T9.1 | 98.6% | KEV실공격익스공개기능적 EPSS 99% | Google Chromium V8 🦠 CVE-2023-4863 (Exploit); Hqwar (Dropper); Coper (Trojan) |
| 90 | CVE-2021-38003 | — T8.9 | 98.5% | KEV실공격익스공개기능적 EPSS 99% | Google Chromium V8 🦠 CVE-2021-38003 (Exploit) |
| 90 | CVE-2019-11707 | — T8.2 | 98.5% | KEV실공격PoC기능적 EPSS 98% | Mozilla Firefox and Thunderbird |
| 90 | CVE-2014-3153 | — T9.3 | 98.5% | KEV실공격PoC기능적 EPSS 98% | Linux Kernel 🦠 ANDROIDOS_HTBENEWS.A (Backdoor); ANDROIDOS_SHUAME.HRXA (Rootkit); ANDROIDOS_SHUAME.HRX (Rootkit); ANDROIDOS_S… |
| 90 | CVE-2022-22960 | — T9.1 | 98.4% | KEV실공격익스공개기능적 EPSS 98% | VMware Multiple Products 🦠 WebShell (Trojan); Spring4shell (Hacktool); CVE-2022-22954 (Exploit); RemoteShell (Backdoor); Clop (Ransomwar… |
| 90 | CVE-2020-13671 | — T8.2 | 98.4% | KEV실공격PoC기능적 EPSS 98% | Drupal Drupal core 🦠 Ryuk (Ransomware) |
| 90 | CVE-2021-37975 | — T9.1 | 98.4% | KEV실공격PoC기능적 EPSS 98% | Google Chromium V8 🦠 CVE-2020-6418 (Exploit); CVE-2020-6507 (Exploit); CVE-2019-5825 (Exploit); CVE-2021-21220 (Exploit); CVE-2021… |
| 90 | CVE-2020-8195 | — T8.2 | 98.3% | KEV실공격익스공개기능적 EPSS 98% | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance 🦠 Unattributed (Ransomware) |
| 90 | CVE-2025-21042 | — T9.1 | 98.3% | KEV실공격익스공개기능적 EPSS 98% | Samsung Mobile Devices |
| 90 | CVE-2021-30633 | — T8.9 | 98.3% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium Indexed DB API 🦠 CVE-2021-30632 (Exploit) |
| 90 | CVE-2019-15752 | — T9.1 | 98.2% | KEV실공격PoC기능적 EPSS 98% | Docker Desktop Community Edition 🦠 CVE-2019-5736 (Exploit) |
| 90 | CVE-2017-5070 | — T9.1 | 98.2% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium V8 🦠 CVE-2019-5782 (Exploit) |
| 90 | CVE-2023-41993 | — T9.1 | 98.1% | KEV실공격PoC기능적 EPSS 98% | Apple Multiple Products 🦠 Exxroute (Ransomware); Reveton (Ransomware); ASN1 (Ransomware); Alma Locker (Ransomware); AnteFrigus (Ransomw… |
| 90 | CVE-2022-37969 | — T9.1 | 98.0% | KEV실공격익스공개기능적 EPSS 98% | Microsoft Windows 🦠 Sasgent (Exploit); CVE-2022-35803 (Exploit); Unattributed (Ransomware); BianLian (Ransomware) |
| 90 | CVE-2025-27363 | — T7.5 | 98.0% | KEV실공격익스공개기능적 EPSS 98% | FreeType FreeType |
| 90 | CVE-2023-28205 | — T9.3 | 98.0% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2021-21166 | — T8.2 | 97.9% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium |
| 90 | CVE-2020-8196 | — T8.2 | 97.9% | KEV실공격익스공개기능적 EPSS 98% | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance 🦠 Unattributed (Ransomware) |
| 90 | CVE-2024-35250 | — T9.1 | 97.8% | KEV실공격PoC기능적 EPSS 98% | Microsoft Windows 🦠 CVE-2024-30088 (Exploit); CVE-2024-35250 (Exploit); CVE-2024-30085 (Exploit); Heuristic (Malware); Qilin (Ran… |
| 90 | CVE-2022-0185 | — T8.2 | 97.8% | KEV실공격익스공개기능적 EPSS 98% | Linux Kernel 🦠 Multiverze (Trojan); CVE-2022-0847 (Exploit); CVE-2021-4034 (Exploit); CVE-2022-25636 (Exploit); CVE-2022-229… |
| 90 | CVE-2022-1096 | — T8.2 | 97.8% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium V8 |
| 90 | CVE-2023-32439 | — T9.3 | 97.7% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2023-32435 | — T9.3 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2024-44309 | — T9.3 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2014-0196 | — T9.3 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Linux Kernel 🦠 ANDROIDOS_HTBENEWS.A (Backdoor); ANDROIDOS_SHUAME.HRXA (Rootkit); ANDROIDOS_SHUAME.HRX (Rootkit); ANDROIDOS_S… |
| 90 | CVE-2022-0609 | — T8.9 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium Animation 🦠 CVE-2022-0609 (Exploit); Black Basta (Ransomware) |
| 90 | CVE-2021-3560 | — T7.2 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Red Hat Polkit 🦠 CVE-2021-3560 (Exploit) |
| 90 | CVE-2023-29360 | — T9.1 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Microsoft Streaming Service 🦠 CVE-2023-29360 (Exploit); Heuristic (Malware) |
| 90 | CVE-2026-2441 | — T9.1 | 97.5% | KEV실공격PoC기능적 EPSS 98% | Google Chromium |