ossec
Security Risk Profile
76
/100
highSecurity Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 2, 2014 to present
13
Total CVEs
10
Critical+High
0
Exploited
8
Unpatched
Threat Assessment
Avg CVSS
8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
8
Critical/High
Risk Level
76/100
high
Severity Distribution
Critical
5High
5Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Input Validation
2
2
Buffer Overflow
2
3
Use After Free
2
4
Path Traversal
2
5
Null Pointer Dereference
1
Most Affected Products
1. OSSEC OSSEC14
2. OSSEC HIDS agent for Windows1
3. Wazuh Wazuh1
4. OSSEC Web UI1
Recent Vulnerabilities
See more →CVE-2024-1244
CVSS 9.5critical
Remote code execution and local privilege escalation due to UNC access and NetNTLMv2 hash theft
6/11/2025🔧 No Patch
CVE-2021-28040
CVSS 7.5high
3/5/2021🔧 No Patch
CVE-2020-8442
CVSS 8.8high
1/30/2020
CVE-2020-8443
CVSS 9.8critical
1/30/2020🔧 No Patch
CVE-2020-8444
CVSS 9.8critical
1/30/2020🔧 No Patch
CVE-2020-8445
CVSS 9.8critical
1/30/2020🔧 No Patch
CVE-2020-8446
CVSS 5.5medium
1/30/2020🔧 No Patch
CVE-2020-8447
CVSS 9.8critical
1/30/2020🔧 No Patch
CVE-2020-8448
CVSS 5.5medium
1/30/2020🔧 No Patch
CVE-2018-19666
CVSS 7.8high
11/29/2018🔧 No Patch
Monitor ossec in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.