Vulnerabilities used by  Clop


This information is provided by Ransomware-Vulnerability-Matrix


This is the list of vulnerabilities that have been observed during intrusions by  
Clop

Vendor Product CVE Source
Accellion Accellion File Transfer Appliance  🔴  CVE-2021-27101, CVE-2021-27102, CVE-2021-27103, CVE-2021-27104 mandiant.com
Fortra GoAnywhere Managed File Transfer  🟠  CVE-2023-0669 censys.io
Progress Software MOVEit  🔴  CVE-2023-34362 cisa.gov
PaperCut PaperCut Application Server  🔴  CVE-2023-27350 & CVE-2023-27351 twitter.com/MsftSecIntel
SolarWinds SolarWinds Serv-U FTP  🔴  CVE-2021-35211 research.nccgroup.com

CVE Severity Levels

Severity Score Range Description
⚪️ Low 0.1 - 3.9 Minor impact on the system; typically does not require immediate action.
🌕 Medium 4.0 - 6.9 Moderate impact; may require action but is generally not urgent.
🟠 High 7.0 - 8.9 Significant impact; needs attention soon to prevent potential exploitation.
🔴 Critical 9.0 - 10.0 Severe impact; requires immediate action due to the high risk of exploitation and potential for serious damage.