Search

See Resources

Top 10 Vulnerabilities

The Top 10 External and Top 10 Internal Vulnerabilities are dynamic lists of the most prevalent and critical security vulnerabilities in the real world. Based on the Laws of Vulnerabilities, this information is computed anonymously from over 2 billion IP audits per year. The Top 10 External Vulnerabilities are the most prevalent and critical vulnerabilities which have been identified on Internet facing systems. The Top 10 Internal Vulnerabilities show this information for systems and networks inside the firewall.

The two Top 10 lists exclude vulnerabilities that do not have patches, even if workarounds are available, because these lists are tools to help prioritize remediation.

Top 10 Internal Vulnerabilities Published May 2011

  1. Microsoft Windows GDI+ Remote Code Execution Vulnerability (MS09-062)

    Qualys ID:
    90551
    Vendor Reference:
    MS09-062
    CVE Reference:
  2. Microsoft Windows Print Spooler Remote Code Execution Vulnerability (MS10-061) and Shadow Brokers (EMERALDTHREAD)

    Qualys ID:
    90636
    Vendor Reference:
    MS10-061
    CVE Reference:
  3. Microsoft Windows Fax Cover Page Editor Remote Code Execution Vulnerability (MS11-024)

    Qualys ID:
    90675
    Vendor Reference:
    MS11-024
    CVE Reference:
  4. Microsoft Internet Explorer Remote Code Execution Vulnerability (MS11-003 and KB2488013)

    Qualys ID:
    100096
    Vendor Reference:
    KB2488013, MS11-003
    CVE Reference:
  5. Microsoft Office PowerPoint Could Allow Remote Code Execution (MS09-017)

    Qualys ID:
    110094
    Vendor Reference:
    MS09-017
    CVE Reference:
  6. Macrovision InstallShield Update Service Multiple Insecure Methods

    Qualys ID:
    115748
    Vendor Reference:
    Q113020, Q113602
    CVE Reference:
  7. Apple QuickTime Prior to 7.6.9 Multiple Vulnerabilities (APPLE-SA-2010-12-07-1)

    Qualys ID:
    117647
    Vendor Reference:
    APPLE-SA-2010-12-07-1
    CVE Reference:
  8. Adobe Reader and Acrobat Security Update (APSB11-03)

    Qualys ID:
    118956
    Vendor Reference:
    APSB11-03
    CVE Reference:
  9. Oracle Java SE Critical Patch Update - February 2011

    Qualys ID:
    118972
    Vendor Reference:
    Oracle JAVA CPU FEB2011
    CVE Reference:
  10. Adobe Flash Player Unspecified Code Execution Vulnerability (APSA11-01 and APSB11-05)

    Qualys ID:
    119052
    Vendor Reference:
    APSA11-01, APSB11-05
    CVE Reference:

Top 10 External Vulnerabilities Published May 2011

  1. SSL Server Allows Anonymous Authentication Vulnerability

    Qualys ID:
    38142
    Vendor Reference:
    No Vendor Reference
  2. SSH Protocol Version 1 Supported

    Qualys ID:
    38304
    Vendor Reference:
    No Vendor Reference
    CVE Reference:
  3. OpenSSH Signal Handling Vulnerability

    Qualys ID:
    38560
    Vendor Reference:
    No Vendor Reference
    CVE Reference:
  4. OpenSSL Multiple Vulnerabilities

    Qualys ID:
    38561
    Vendor Reference:
    Advisory, FEDORA-2006-1004, FEDORA-2006-1373, USN-353-2
    CVE Reference:
  5. Null Session/Password NetBIOS Access

    Qualys ID:
    70003
    Vendor Reference:
    No Vendor Reference
    CVE Reference:
  6. Internet Information Services (IIS) Could Allow Elevation of Privilege (MS09-020)

    Qualys ID:
    86837
    Vendor Reference:
    MS09-020
    CVE Reference:
  7. Microsoft Windows Server Service Could Allow Remote Code Execution (MS08-067) and Shadow Brokers (ECLIPSEDWING)

    Qualys ID:
    90464
    Vendor Reference:
    MS08-067
    CVE Reference:
  8. Microsoft SMB Remote Code Execution Vulnerability (MS09-001)

    Qualys ID:
    90477
    Vendor Reference:
    MS09-001
    CVE Reference:
  9. EOL/Obsolete Operating System: Microsoft Windows 2000 Detected

    Qualys ID:
    105359
    Vendor Reference:
    Windows 2000 End of Life
  10. PHP Multiple Buffer Overflow Vulnerabilities

    Qualys ID:
    116063
    Vendor Reference:
    PHP 4.4.9, PHP 5.2.8
    CVE Reference:

Archive of Top 10 Vulnerabilities

Email or call us at +1 800 745 4355 or try our Global Contacts
Subscription Packages
Qualys Solutions
Qualys Community
Company
Free Trial & Tools
Popular Topics