Vulnerabilities & Risk
Vulnerability exposure across the deployed estate — severity, exploitability, aging and reporting performance, with the priority logic applied to every finding.
Total vulnerabilities
22.4K
across 82 deployed sites
Critical severity
1,708
7.6% of total
CVSS 10 vulnerabilities
51
maximum severity score
Highly exploitable
355
EPSS above 50%
Reported
16.9K
75.6% of total
Unreported
5,453
awaiting customer report
Breaching SLA
309
critical vulns past remediation SLA
Severity breakdown
22.4K open vulnerabilities by severityCritical · 1,708 (7.6%)High · 4,668 (20.8%)Medium · 9,059 (40.5%)Low · 6,954 (31.1%)
Priority logic
how findings are rankedP1CVSS 10 + EPSS > 50% + critical asset
P2Critical/High CVSS + high asset criticality
P3Medium severity or lower exploitability
P4Low severity or informational
Priority = CVSS + EPSS + asset criticality + exposure + business impact
Vulnerability aging
open vulnerabilities by time since detection20.0% of open vulnerabilities are older than 90 days.
Exploitability view
top 10 CVEs by EPSS score across affected sitesTop vulnerable sites
open vulnerabilities per site, top 8Top vulnerabilities
catalog CVEs present in the filtered estate| CVE | Vulnerability | Vendor | CVSS | EPSS %▼ | Affected assets | Sites | Priority |
|---|---|---|---|---|---|---|---|
| CVE-2021-44228 | Apache Log4j RCE on OT management servers | Multiple | 10.0 | 97.4% | 406 | 25 | P1 |
| CVE-2019-0708 | RDP "BlueKeep" RCE on HMI/EWS hosts | Microsoft | 9.8 | 96.9% | 262 | 17 | P1 |
| CVE-2017-0144 | SMBv1 "EternalBlue" on legacy Windows nodes | Microsoft | 9.3 | 94.2% | 285 | 22 | P2 |
| CVE-2015-5374 | Siemens SIPROTEC denial of service | Siemens | 7.8 | 71.3% | 514 | 30 | P2 |
| CVE-2022-1161 | Rockwell Logix controller code modification | Rockwell | 10.0 | 61.2% | 433 | 28 | P1 |
| CVE-2023-3595 | Rockwell 1756 EN2/EN3 unauthenticated RCE | Rockwell | 9.8 | 55.8% | 393 | 24 | P1 |
| CVE-2021-22681 | Rockwell Studio 5000 key extraction | Rockwell | 10.0 | 42.7% | 445 | 24 | P2 |
| CVE-2022-45788 | Schneider Modicon remote code execution | Schneider | 9.8 | 31.5% | 491 | 31 | P2 |
| CVE-2021-33723 | Siemens SINEC NMS privilege escalation | Siemens | 8.8 | 17.6% | 516 | 30 | P3 |
| CVE-2020-12030 | Emerson WirelessHART gateway auth bypass | Emerson | 9.1 | 12.4% | 263 | 20 | P2 |
| CVE-2020-14509 | GE Reason RT430 hardcoded credentials | GE | 9.8 | 9.8% | 435 | 31 | P2 |
| CVE-2022-38465 | Siemens S7-1500 global key exposure | Siemens | 9.3 | 8.9% | 434 | 32 | P2 |
| CVE-2020-25176 | Mitsubishi MELSEC iQ-R DoS | Mitsubishi | 7.5 | 6.2% | 545 | 35 | P3 |
| CVE-2016-2183 | SWEET32 3DES on OT web interfaces | Multiple | 5.3 | 5.7% | 472 | 28 | P3 |
| CVE-2019-6857 | Schneider Modicon M580 DoS | Schneider | 7.5 | 4.1% | 392 | 26 | P3 |
| CVE-2017-14463 | Allen-Bradley MicroLogix fault DoS | Rockwell | 7.5 | 3.9% | 334 | 20 | P3 |
| CVE-2020-7491 | Schneider Triconex legacy debug port | Schneider | 7.4 | 3.3% | 290 | 22 | P3 |
| CVE-2019-10936 | Siemens PROFINET DoS | Siemens | 6.5 | 2.8% | 382 | 25 | P3 |
| CVE-2018-4850 | Siemens S7-400 crafted packet DoS | Siemens | 6.5 | 2.1% | 383 | 25 | P3 |
| CVE-2019-13945 | Siemens S7-1200 hardware access mode | Siemens | 4.6 | 1.2% | 233 | 20 | P4 |
All times shown in local time of selected region · Data refresh every 15 minutes