Communications Instant Messaging Server
by Oracle
Review your setup
Communications Instant Messaging Server has some exploitation signals but is generally manageable with regular updates.
What to do
- Keep this software updated
- Review your configuration for unnecessary exposure
- Check for known-vulnerable components or plugins
What Attackers Target
Vulnerabilities with high exploit probability
33.3%
Confirmed actively exploited (CISA)
5.3%
Public exploit code available
3.5%
Based on 57 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.
Most Dangerous Vulnerabilities
| CVE | CVSS | Exploit Probability | Confirmed |
|---|---|---|---|
| CVE-2020-1938 | 9.8 | 94.5% | Yes |
| CVE-2017-12617 | 8.1 | 94.4% | Yes |
| CVE-2017-5645 | 9.8 | 94.0% | — |
| CVE-2016-8735 | 9.8 | 93.8% | Yes |
| CVE-2020-9484 | 7.0 | 93.3% | — |
| CVE-2020-13935 | 7.5 | 91.7% | — |
| CVE-2017-7525 | 9.8 | 79.3% | — |
| CVE-2020-11113 | 8.8 | 60.7% | — |
| CVE-2020-36179 | 8.1 | 60.3% | — |
| CVE-2020-9548 | 9.8 | 57.6% | — |
| CVE-2020-10672 | 8.8 | 40.1% | — |
| CVE-2020-9547 | 9.8 | 38.3% | — |
| CVE-2018-7489 | 9.8 | 36.2% | — |
| CVE-2020-13934 | 7.5 | 23.4% | — |
| CVE-2020-10673 | 8.8 | 20.5% | — |
| CVE-2018-14718 | 9.8 | 14.5% | — |
| CVE-2018-11307 | 9.8 | 12.6% | — |
| CVE-2020-17527 | 7.5 | 10.5% | — |
| CVE-2019-14439 | 7.5 | 10.3% | — |
| CVE-2020-14195 | 8.1 | 9.5% | — |
49
/ 100
moderate-risk
Active Threat
45/50 · Critical
Exploit Availability
4/50 · Minimal
Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.