위협 인텔리전스 (1,991건)
실제 악용·공격 신호가 있는 취약점 — CISA KEV · Qualys RTI · 공개 PoC/익스플로잇 · 악용확률(EPSS) 높은 건 통합. Qualys 마지막 동기화 9시간 전.
CISA KEV
1,685
실제 공격 중
985
랜섬웨어
352
익스플로잇 공개
1,324
악용확률 50%↑
877
제로데이
13
| 긴급도 | CVE | 심각도 | 악용확률 | 신호 | 제품 · 악성코드 |
|---|---|---|---|---|---|
| 90 | CVE-2023-32439 | — T9.3 | 97.7% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2023-32435 | — T9.3 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2024-44309 | — T9.3 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2014-0196 | — T9.3 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Linux Kernel 🦠 ANDROIDOS_HTBENEWS.A (Backdoor); ANDROIDOS_SHUAME.HRXA (Rootkit); ANDROIDOS_SHUAME.HRX (Rootkit); ANDROIDOS_S… |
| 90 | CVE-2022-0609 | — T8.9 | 97.6% | KEV실공격익스공개기능적 EPSS 98% | Google Chromium Animation 🦠 CVE-2022-0609 (Exploit); Black Basta (Ransomware) |
| 90 | CVE-2021-3560 | — T7.2 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Red Hat Polkit 🦠 CVE-2021-3560 (Exploit) |
| 90 | CVE-2023-29360 | — T9.1 | 97.6% | KEV실공격PoC기능적 EPSS 98% | Microsoft Streaming Service 🦠 CVE-2023-29360 (Exploit); Heuristic (Malware) |
| 90 | CVE-2026-2441 | — T9.1 | 97.5% | KEV실공격PoC기능적 EPSS 98% | Google Chromium |
| 90 | CVE-2020-27930 | — T8.2 | 97.5% | KEV실공격PoC기능적 EPSS 98% | Apple Multiple Products |
| 90 | CVE-2023-36563 | — T9.1 | 97.4% | KEV실공격익스공개기능적 EPSS 97% | Microsoft WordPad 🦠 CVE-2023-36584 (Exploit); CVE-2023-44487 (Exploit) |
| 90 | CVE-2024-7971 | — T8.9 | 97.4% | KEV실공격익스공개기능적 EPSS 97% | Google Chromium V8 |
| 90 | CVE-2021-21148 | — T9.1 | 97.3% | KEV실공격익스공개기능적 EPSS 97% | Google Chromium V8 🦠 CVE-2023-44487 (Exploit) |
| 90 | CVE-2023-37450 | — T9.3 | 97.2% | KEV실공격익스공개기능적 EPSS 97% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2026-48172 | 9.8 | 97.2% | KEVPoC EPSS 97% | LiteSpeed cPanel Plugin |
| 90 | CVE-2024-7965 | — T8.2 | 97.1% | KEV실공격PoC기능적 EPSS 97% | Google Chromium V8 |
| 90 | CVE-2023-42916 | — T9.3 | 97.0% | KEV실공격익스공개기능적 EPSS 97% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2025-24085 | — T9.3 | 97.0% | KEV실공격PoC기능적 EPSS 97% | Apple Multiple Products |
| 90 | CVE-2022-27926 | — T9.1 | 97.0% | KEV실공격익스공개기능적 EPSS 97% | Synacor Zimbra Collaboration Suite (ZCS) 🦠 BianLian (Ransomware); MalasLocker (Ransomware); Ryuk (Ransomware); Black Basta (Ransomware); Unattributed (R… |
| 90 | CVE-2020-27950 | — T8.2 | 96.8% | KEV실공격PoC기능적 EPSS 97% | Apple Multiple Products |
| 90 | CVE-2022-22620 | — T9.3 | 96.8% | KEV실공격PoC기능적 EPSS 97% | Apple iOS, iPadOS, and macOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2020-3837 | — T9.1 | 96.8% | KEV실공격PoC기능적 EPSS 97% | Apple Multiple Products 🦠 Dirtelti (Backdoor); Heuristic (Backdoor); CVE-2020-3837 (Exploit); Deadbolt (Ransomware); NextCry (Ransomwar… |
| 90 | CVE-2024-4947 | — T9.1 | 96.6% | KEV실공격PoC기능적 EPSS 97% | Google Chromium V8 |
| 90 | CVE-2022-38028 | — T8.2 | 96.5% | KEV실공격익스공개기능적 EPSS 97% | Microsoft Windows |
| 90 | CVE-2010-3904 | — T7.2 | 96.5% | KEV실공격PoC기능적 EPSS 96% | Linux Kernel 🦠 Generic (Trojan); Bitrep (Trojan); Ymacco (Trojan); Lotoor (Backdoor); Enoket (Exploit) |
| 90 | CVE-2021-1789 | — T9.3 | 96.4% | KEV실공격익스공개기능적 EPSS 96% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2023-28204 | — T9.3 | 96.4% | KEV실공격익스공개기능적 EPSS 96% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2022-26485 | — T8.9 | 96.4% | KEV실공격익스공개기능적 EPSS 96% | Mozilla Firefox |
| 90 | CVE-2023-38180 | — T9.1 | 96.3% | KEV실공격익스공개기능적 EPSS 96% | Microsoft .NET Core and Visual Studio 🦠 CVE-2023-44487 (Exploit) |
| 90 | CVE-2022-1364 | — T8.2 | 96.3% | KEV실공격PoC기능적 EPSS 96% | Google Chromium V8 |
| 90 | CVE-2024-38213 | — T9.1 | 96.3% | KEV실공격익스공개기능적 EPSS 96% | Microsoft Windows 🦠 CVE-2024-30088 (Exploit); CVE-2024-35250 (Exploit); CVE-2024-30085 (Exploit); Heuristic (Malware); Qilin (Ran… |
| 90 | CVE-2022-38181 | — T8.2 | 96.2% | KEV실공격PoC기능적 EPSS 96% | Arm Mali Graphics Processing Unit (GPU) |
| 90 | CVE-2023-20867 | — T9.1 | 96.2% | KEV실공격익스공개기능적 EPSS 96% | VMware Tools 🦠 Akira (Ransomware) |
| 90 | CVE-2021-30858 | — T9.1 | 96.2% | KEV실공격PoC기능적 EPSS 96% | Apple iOS, iPadOS, and macOS 🦠 Multiverze (Trojan); GetShell (Trojan); Mirai (Trojan); CVE-2021-4034 (Exploit); CVE-2022-0847 (Exploit); Gen… |
| 90 | CVE-2025-6554 | — T8.2 | 96.0% | KEV실공격PoC기능적 EPSS 96% | Google Chromium V8 |
| 90 | CVE-2022-22675 | — T9.1 | 96.0% | KEV실공격익스공개기능적 EPSS 96% | Apple macOS 🦠 CVE-2022-26766 (Exploit) |
| 90 | CVE-2023-32373 | — T9.3 | 95.9% | KEV실공격익스공개기능적 EPSS 96% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2021-38648 | — T9.1 | 95.8% | KEV실공격익스공개기능적 EPSS 96% | Microsoft Open Management Infrastructure (OMI) 🦠 CVE-2021-38647 (Exploit); Unattributed (Ransomware) |
| 90 | CVE-2024-4761 | — T9.1 | 95.7% | KEV실공격PoC기능적 EPSS 96% | Google Chromium V8 |
| 90 | CVE-2021-30762 | — T9.3 | 95.6% | KEV실공격익스공개기능적 EPSS 96% | Apple iOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2024-23222 | — T9.3 | 95.5% | KEV실공격PoC기능적 EPSS 96% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2021-30761 | — T9.3 | 95.5% | KEV실공격익스공개기능적 EPSS 96% | Apple iOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 90 | CVE-2022-2586 | — T9.1 | 95.5% | KEV실공격PoC기능적 EPSS 95% | Linux Kernel 🦠 CVE-2022-2639 (Exploit) |
| 90 | CVE-2020-27932 | — T8.2 | 95.4% | KEV실공격익스공개기능적 EPSS 95% | Apple Multiple Products |
| 89 | CVE-2023-1671 | — T8.8 | 100.0% | KEVPoC EPSS 100%원격 | Sophos Web Appliance |
| 89 | CVE-2017-7921 | — T8.8 | 100.0% | KEV익스공개 EPSS 100%원격 | Hikvision Multiple Products |
| 89 | CVE-2013-2251 | — T8.8 | 100.0% | KEVPoC EPSS 100%원격 | Apache Struts |
| 89 | CVE-2024-3273 | — T9.3 | 100.0% | KEV익스공개 EPSS 100%원격 | D-Link Multiple NAS Devices |
| 89 | CVE-2022-44877 | — T8.8 | 100.0% | KEVPoC EPSS 100%원격 | CWP Control Web Panel |
| 89 | CVE-2024-7593 | — T8.8 | 100.0% | KEV익스공개 EPSS 100%원격 | Ivanti Virtual Traffic Manager |
| 89 | CVE-2020-9054 | — T8.8 | 100.0% | KEVPoC EPSS 100%원격 | Zyxel Multiple Network-Attached Storage (NAS) Devices |