Nessus 的 CGI abuses 系列

ID名稱嚴重性
213086Cleo Harmony < 5.8.0.24 未經驗證的任意命令執行 (CVE-2024-55956)
critical
213085Cleo VLTrader < 5.8.0.24 未經驗證的任意命令執行 (CVE-2024-55956)
critical
213032GitLab 15.0 <17.4.6/17.5 < 17.5.4/17.6 < 17.6.2 (CVE-2024-8650)
medium
213030GitLab 16.9 <17.4.6/17.5 < 17.5.4/17.6 < 17.6.2 (CVE-2024-8116)
medium
213011ManageEngine ServiceDesk Plus < 14.9 Build 14920
medium
213005SolarWinds Web Help Desk < 12.8.4 多個弱點
medium
212769Liferay Portal 7.4.3.75 < 7.4.3.112 CSRF
high
212768Liferay Portal 7.4.0 < 7.4.3.104 CSRF
high
212767Liferay Portal 7.3.2 < 7.4.3.108 CSRF
high
212711Liferay Portal 7.0.0 < 7.4.3.102 XSS
medium
212362Splunk Enterprise 9.1.0 < 9.1.7、< 9.2.4、< 9.3.2 (SVD-2024-1205)
high
212244Adobe Connect <= 11.4.7 多個弱點 (APSB24-99)
critical
212220Splunk Enterprise 9.1.0 < 9.1.7、9.2.0 < 9.2.4、9.3.0 < 9.3.2 (SVD-2024-1204)
medium
212219Splunk Enterprise 9.1.0 < 9.1.7、9.2.0 < 9.2.4、9.3.0 < 9.3.2 (SVD-2024-1201)
medium
212218Splunk Enterprise 9.1.0 < 9.1.7、9.2.0 < 9.2.4、9.3.0 < 9.3.2 (SVD-2024-1202)
medium
212217Splunk Enterprise 9.1.0 < 9.1.7、9.2.0 < 9.2.4 (SVD-2024-1203)
medium
212089Mattermost Server 9.5.x < 9.5.10、9.10.x < 9.10.3、9.11.x < 9.11.2、10.0.x < 10.0.1、10.1.0 (MMSA-2024-00381)
medium
212077Mattermost Server 9.11.x < 9.11.3、10.0.x < 10.0.1、10.1.0 (MMSA-2024-00385)
medium
212063SolarWinds Platform 2024.0 < 2024.4.1 XSS
medium
212076Mattermost Server 9.5.x < 9.5.11、9.11.x < 9.11.3、10.1.0 (MMSA-2024-00370)
medium
211917Jenkins plugins 多個弱點 (2024-11-27)
high
211904Atlassian Confluence 7.19.x < 7.19.26 / 7.20.x < 8.5.12 / 8.6.x < 8.9.4 / 9.0.x < 9.0.1 (CONFSERVER-98481)
high
211882GitLab 17.3 < 17.3.7 / 17.4 < 17.4.4 / 17.5 < 17.5.2 (CVE-2024-10240)
medium
211860GitLab 16.11 <17.4.5/17.5 < 17.5.3/17.6 < 17.6.1 (CVE-2024-11668)
medium
211859GitLab 15.6 <17.4.5/17.5 < 17.5.3/17.6 < 17.6.1 (CVE-2024-8177)
high
211858GitLab 12.6 <17.4.5/17.5 < 17.5.3/17.6 < 17.6.1 (CVE-2024-8237)
high
211857GitLab 8.12 <17.4.5/17.5 < 17.5.3/17.6 < 17.6.1 (CVE-2024-8114)
high
211855GitLab 13.2.4 <17.4.5/17.5 < 17.5.3/17.6 < 17.6.1 (CVE-2024-11828)
high
211699Zimbra Collaboration Server 10.0 < 10.0.9、10.1.0 < 10.1.1 XSS
medium
211698Zimbra Collaboration Server 9.0.0 < 9.0.0 Patch 41、10.0 < 10.0.9、10.1.0 < 10.1.1 XSS
medium
211681WordPress Plugin「Really Simple Security」9.0.0 < 9.1.2 驗證繞過
critical
211680WordPress Plugin「Really Simple Security Pro」9.0.0 < 9.1.2 驗證繞過
critical
211679WordPress Plugin「Really Simple Security Pro Multisite」9.0.0 < 9.1.2 驗證繞過
critical
211678D-Link 路由器錯誤使用特權 API (CVE-2024-11068)
critical
211671PHP 8.2.x < 8.2.26 多個弱點
critical
211670PHP 8.3.x < 8.3.14 多個弱點
critical
211669PHP 8.1.x < 8.1.31 多個弱點
critical
211656Drupal 7.x < 7.102 / 10.2.x < 10.2.11 / 10.3.x < 10.3.9 / 11.x < 11.0.8 多個弱點 (drupal-2024-11-20)
critical
211474NetScaler ADC 和 NetScaler Gateway 多個弱點 (CTX691608)
high
211469Progress Telerik Report Server <= 10.2.24.924 加密弱點 (CVE-2024-7295)
medium
211452GitLab 16.0 <17.3.7/17.4 < 17.4.4/17.5 < 17.5.2 (CVE-2024-8648)
medium
211451GitLab 17.2 <17.3.7/17.4 < 17.4.4/17.5 < 17.5.2 (CVE-2024-7404)
medium
211450GitLab 16.3 <17.4.2/17.5 < 17.5.4/17.6 < 17.6.2 (CVE-2024-9633)
high
210954Palo Alto Expedition 1.2.x < 1.2.92 (CVE-2024-5910)
critical
210945GitLab 17.3 <17.3.7/17.4 < 17.4.4/17.5 < 17.5.2 (CVE-2024-8180)
medium
210944GitLab 16.0 <17.3.7/17.4.0 < 17.4.4/17.5.0 < 17.5.2 (CVE-2024-9693)
high
210929Jenkins plugin 多個弱點 (2024-11-13)
high
210334PTZOptics 相機多個弱點 (直接檢查)
critical
210053Progress Telerik Report Server <= 10.2.24.709 多個弱點 (2024 年 9 月)
high
210052Progress Telerik Report Server <= 10.2.24.806 不安全類型解析 (CVE-2024-8015)
high