Nessus 的 CGI abuses 系列

ID名稱嚴重性
154964ManageEngine ADSelfServicePlus 驗證繞過 (CVE-2021-40539)
critical
154935Nagios XI < 5.6.6 RCE
high
154933Accellion File Transfer Appliance < 9_12_416 多個弱點
critical
154894Jenkins LTS < 2.303.3/Jenkins 每週版 < 2.319 多個弱點
critical
154879GitLab 7.12.x < 13.8.8 / 13.9.x < 13.9.6/13.10.x < 13.10.3 RCE
critical
154728DNN (DotNetNuke) 9.2 <= 9.2.2 弱式加密演算法弱點
high
154663PHP 7.3.x < 7.3.32
high
154656PHP 7.4.x < 7.4.24 任意檔案寫入
medium
154650PHP 7.3.x < 7.3.31 任意檔案寫入
medium
154349PHP 7.4.x < 7.4.25
high
154339SolarWinds Orion Platform < 2020.2.6 HF1 多個弱點
critical
154297Oracle Primavera Gateway (2021 年 10 月 CPU)
high
154296PHP 8.0.x < 8.0.12
high
154267Oracle MySQL Enterprise Monitor (2021 年 10 月 CPU)
high
154262Oracle Primavera Unifier (2021 年 10 月 CPU)
high
154244Atlassian Confluence 任意檔案讀取 (CVE-2021-26085)
medium
154144Adobe Connect <= 11.2.3 多個任意程式碼執行弱點 (APSB21-91)
medium
154057Atlassian Jira 未經驗證的使用者列舉 (CVE-2020-36289)
medium
154056Atlassian JIRA < 8.5.15/8.6.x < 8.13.7 / 8.14.x < 8.17.0 Unauth 使用者列舉 (JRASERVER-71559)
medium
154055Jenkins LTS < 2.303.2/Jenkins 每週版 < 2.315 多個弱點
medium
153981Jenkins Enterprise and Operations Center < 2.249.32.0.1/2.277.41.0.1/2.303.1.5 錯誤權限 (CloudBees 安全性公告 2021-08-25)
low
153978Jenkins Enterprise and Operations Center < 2.289.3.2 修訂版 2 錯誤權限 (CloudBees 安全性公告 2021-08-02)
low
153977Jenkins Enterprise and Operations Center < 2.249.31.0.6/2.277.40.0.1/2.289.2.2 多個弱點 (CloudBees 安全性公告 2021-06-30)
high
153976Jenkins Enterprise and Operations Center < 2.249.31.0.5/2.289.1.2 多個弱點 (CloudBees 安全性公告 2021-06-02)
medium
153890Jenkins Enterprise and Operations Center < 2.249.32.0.2/2.277.41.0.2/2.303.1.6 多個弱點 (CloudBees 安全性公告 2021-08-31)
high
153885Apache HTTP Server 2.4.49路徑遍歷 (CVE-2021-41773)
high
153848ManageEngine EventLog Analyzer < Build 12201 REST API 限制繞過 RCE
critical
153807SonicWall Secure Mobile Access 任意檔案刪除 (SNWLID-2021-0021)
critical
153636ManageEngine Log360 < Build 5229 REST API 限制繞過 RCE
critical
153635ManageEngine Log360 偵測
info
153612Nagios XI < 5.8.5 多個弱點
critical
153490Liferay Portal 7.3.5 儲存型 XSS
medium
153402Drupal 8.9.x < 8.9.19 / 9.1.x < 9.1.13 / 9.2.x < 9.2.6 多個弱點 (drupal-2021-09-15)
critical
153176Citrix ADC 驗證繞過 (CTX247738)
critical
153175Citrix ADC 驗證繞過 (CTX261735)
high
153173WordPress 5.8 < 5.8.1 / 5.7 < 5.7.3 / 5.6 < 5.6.5 / 5.5 < 5.5.6 / 5.4 < 5.4.7 / 5.2 < 5.2.12
high
153158ManageEngine ADManager Plus 偵測
info
153157ManageEngine ADManager Plus < 7111 RCE
critical
153147ManageEngine ADSelfService Plus < build 6114 REST API 驗證繞過
critical
153087Atlassian Confluence Server Webwork OGNL 插入 (CVE-2021-26084)
critical
152984Joomla 4.0 < 4.0.1 存取控制不足 (5846-joomla-4-0-1)
critical
152865Atlassian JIRA < 8.5.14 / 8.6.x < 8.13.6 / 8.14.x < 8.16.1 XSS (JRASERVER-72392)
medium
152864Atlassian Confluence < 6.13.23 / 6.14 < 7.4.11 / 7.5 < 7.11.6 / 7.12 < 7.12.5 Webwork OGNL 插入 (CONFSERVER-67940)
critical
152853PHP < 7.3.28 電子郵件標頭插入
medium
152680ManageEngine ADSelfService Plus < Build 6102 RCE
critical
152534VMware Workspace One Access / VMware Identity Manager 多個弱點 (VMSA-2021-0016)
critical
152533Drupal 8.9.x < 8.9.18 / 9.1.x < 9.1.12 / 9.2.x < 9.2.4 多個弱點 (SA-CORE-2021-005)
medium
152487Adobe Connect <= 11.2.2 多個弱點 (APSB21-66)
medium
152140Open Access Management 偵測
info
152139OpenAM RCE (CVE-2021-35464)
critical