Nessus 的 CGI abuses 系列

ID名稱嚴重性
190466TYPO3 8.0.0 < 8.7.57 ELTS/9.0.0 < 9.5.46 ELTS/10.0.0 < 10.4.43 ELTS/11.0.0 < 11.5.35/12.0.0 < 12.4.11/13.0.1 (TYPO3-CORE-SA-2024-001)
medium
190465TYPO3 8.0.0 < 8.7.57 ELTS/9.0.0 < 9.5.46 ELTS/10.0.0 < 10.4.43 ELTS/11.0.0 < 11.5.35/12.0.0 < 12.4.11/13.0.1 (TYPO3-CORE-SA-2024-005)
medium
190453TYPO3 8.0.0 < 8.7.57 ELTS/9.0.0 < 9.5.46 ELTS/10.0.0 < 10.4.43 ELTS/11.0.0 < 11.5.35/12.0.0 < 12.4.11/13.0.1 (TYPO3-CORE-SA-2024-003)
medium
190452TYPO3 8.0.0 < 8.7.57 ELTS/9.0.0 < 9.5.46 ELTS/10.0.0 < 10.4.43 ELTS/11.0.0 < 11.5.35/12.0.0 < 12.4.11/13.0.1 (TYPO3-CORE-SA-2024-006)
high
190362Kibana 8.0.x < 8.12.1 (ESA-2024-01)
medium
190346透過 CDN 進行的 CKEditor 偵測
info
190345GitLab 15.11 <16.6.7/16.7 < 16.7.5/16.8 < 16.8.2 (CVE-2023-6386)
medium
190344GitLab 16.8 < 16.8.2 (CVE-2024-1250)
medium
190219VMWare Aria Operations for Networks 6.x < 6.12 多個弱點 (VMSA-2024-0002)
high
190141SolarWinds Platform 2023.4.0 < 2024.1 多個弱點 SQLI
high
190108GitLab 13.3.3 <16.6.7/16.7 < 16.7.5/16.8 < 16.8.2 (CVE-2024-1066)
medium
190107GitLab 16.4 <16.6.7/16.7 < 16.7.5/16.8 < 16.8.2 (CVE-2023-6840)
medium
190095SolarWinds Platform < 2023.4 多個弱點
high
190094ManageEngine ADAudit Plus < Build 7271 多個弱點
critical
190063Ivanti Connect Secure 9.x / 22.x SSRF-RCE 鏈結 (CVE-2024-21893)
high
190062Ivanti Connect Secure 9.x / 22.x SSRF (CVE-2024-21893)
high
190061Ivanti Policy Secure 9.x / 22.x SSRF (CVE-2024-21893)
high
190060Ivanti Policy Secure 9.x / 22.x SSRF-RCE 鏈結 (CVE-2024-21893)
high
189951Ivanti Connect Secure 9.x/22.x 命令插入弱點 (CVE-2024-21887)
critical
189950Ivanti Policy Secure 9.x/22.x 命令插入弱點 (CVE-2024-21887)
critical
189949Ivanti Policy Secure 9.x/22.x 驗證繞過弱點 (CVE-2023-46805)
high
189948Ivanti Connect Secure 9.x/22.x 驗證繞過弱點 (CVE-2023-46805)
high
189904ManageEngine ADAudit Plus < Build 7270 目錄遊走
low
189825WordPress 6.0 < 6.4.3
high
189636Atlassian Confluence 8.0 < 8.5.4 (CONFSERVER-93833) (直接檢查)
critical
189596GitLab 0.0 < 16.5.8/16.6 < 16.6.6/16.7 < 16.7.4/16.8 < 16.8.1 (CVE-2023-5933)
medium
189595GitLab 0.0 <16.6.6/16.7 < 16.7.4/16.8 < 16.8.1 (CVE-2023-5612)
medium
189594GitLab 16.0 < 16.5.8/16.6 < 16.6.6/16.7 < 16.7.4/16.8 < 16.8.1 (CVE-2024-0402)
critical
189593GitLab 14.0 <16.6.6/16.7 < 16.7.4/16.8 < 16.8.1 (CVE-2024-0456)
medium
189592GitLab 12.7 <16.6.6/16.7 < 16.7.4/16.8 < 16.8.1 (CVE-2023-6159)
medium
189534SolarWinds Platform < 2023.3 多個弱點
high
189513MinIO 資訊洩漏 (CVE-2023-28432)
high
189505ManageEngine ServiceDesk Plus MSP < 14.5 Build 14504 XSS
medium
189463Jenkins LTS < 2.426.3/Jenkins 每週版 < 2.442 多個弱點
critical
189462Jenkins plugin 多個弱點 (2024 年 1 月 24 日)
high
189373Fortra GoAnywhere Managed File Transfer (MFT) < 7.4.1 驗證繞過 (CVE-2024-0204)
critical
189300Splunk Enterprise 9.0.0 < 9.0.8 (SVD-2024-0107)
medium
189299Splunk Enterprise 9.0.0 < 9.0.8、9.1.0 < 9.1.3 (SVD-2024-0106)
low
189298Splunk Enterprise 9.0.0 < 9.0.8、9.1.0 < 9.1.3 (SVD-2024-0105)
medium
189297Splunk Enterprise 9.0.0 < 9.0.8、9.1.0 < 9.1.3 (SVD-2024-0108)
high
189296Metabase RCE (CVE-2023-38646)
critical
189276owncloud < 10.13.3 多個弱點
critical
189240Atlassian Confluence < 7.19.17 / 8.0.x < 8.5.5 / 8.6.x < 8.7.2 (CONFSERVER-93516)
high
189239Oracle MySQL Enterprise Monitor (2024 年 1 月 CPU)
critical
189231Drupal < 9.5.11 / 10.0 DoS
high
189185Oracle Primavera Unifier (2024 年 1 月 CPU)
critical
189184Oracle Primavera P6 Enterprise Project Portfolio Management (2024 年 1 月 CPU)
high
189178ManageEngine ADSelfService Plus < build 6402 經驗證的 RCE
high
189124Drupal 10.1.x < 10.1.8 / 10.2.x < 10.2.2 Drupal 弱點 (SA-CORE-2024-001)
high
189070NetScaler ADC 和 NetScaler Gateway 多個弱點 (CTX584986l)
high