Nessus 的 CGI abuses 系列

ID名稱嚴重性
208097Jenkins plugin 多個弱點 (2024-10-02)
high
208085GitHub Enterprise 3.10.x < 3.10.6/3.11.x < 3.11.14/3.12.x < 3.12.8/3.13.x < 3.13.3 (ghsa_75w9_x6cm_hvwg)
medium
208084GitHub Enterprise 3.10.x < 3.10.16 / 3.11.x < 3.11.14 / 3.12.x < 3.12.8 / 3.13.x < 3.13.3 (ghsa_5wm9_5344_qrrj)
critical
208083GitHub Enterprise 3.11.x < 3.11.14 / 3.12.x < 3.12.8 / 3.13.x < 3.13.3 (ghsa_w49g_9f3f_c384)
medium
208073MantisBT < 2.26.4 資訊洩漏 (0034640)
medium
208035Zimbra Collaboration Server 8.0.0 < 8.8.15 Patch 46、9.0.0 < 9.0.0 Patch 41、10.0 < 10.0.9、10.1.0 < 10.1.1 多個弱點
critical
207864CUPS cups-browsed 遠端未經驗證印表機登錄 (CVE-2024-47176)
medium
207855PHP 8.1.x < 8.1.30 多個弱點
high
207839GitLab 15.6 <17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-8974)
medium
207838GitLab 16.5 <17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-4278)
low
207837GitLab 16.0 <17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-4099)
medium
207822PHP 8.2.x < 8.2.24 多個弱點
high
207821PHP 8.3.x < 8.3.12 多個弱點
high
207740IBM Cognos Analytics 11.2.x < 11.2.4 FP4 過渡期修正 2 / 12.0.x < 12.0.3 過渡期修正 2 (7160700)
medium
207454Mattermost Desktop < 5.9.0 (Windows) (MMSA-2024-00307)
high
207453Mattermost Desktop < 5.9.0 (Windows / Unix) (MMSA-2024-00372)
medium
207343Fortinet FortiAnalyzer 授權繞過 (FG-IR-23-204)
medium
207297GitLab 11.1 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-4283)
medium
207296GitLab 16.7 <17.1.7/17.3 < 17.2.5/17.3 < 17.3.2 (CVE-2024-6685)
medium
207243Apache OFBiz < 18.12.16 多個弱點
critical
207111GitLab 16.8 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8635)
medium
207110GitLab 16.11 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8640)
high
207109GitLab 13.3 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-2743)
critical
207108GitLab 8.14 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-6678)
high
207107GitLab 16.6 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8631)
high
207106GitLab 17.1 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-6446)
low
207105GitLab 13.7 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8641)
high
207104GitLab 11.2 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-4660)
high
207103GitLab 16.4 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8124)
high
207102GitLab 16.5 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-4472)
medium
207101GitLab 12.9 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-4612)
medium
207100GitLab 16.9.7 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-8754)
high
207099GitLab 17.1 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-6389)
medium
207098GitLab 15.10 <17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-5435)
medium
207097GitLab 17.2 < 17.2.5 / 17.3 < 17.3.2 (CVE-2024-8311)
medium
207061Kibana < 8.15.1 (ESA-2024-27)
high
207060Kibana 8.10.x < 8.15.1 (ESA-2024-28)
critical
206971WordPress Plugin「LiteSpeed Cache」< 6.5.0.1。未經驗證的帳戶接管
critical
206970WordPress Plugin「LiteSpeed Cache」< 5.7.0.1 儲存型 XSS
medium
206798Atlassian Confluence < 7.19.26 / 7.20.x < 8.5.14 / 8.6.x < 9.0.1 (CONFSERVER-97720)
high
206714ManageEngine Endpoint Central < 11.3.2400.15, < 11.3.2406.08 不正確授權弱點
high
206450Atlassian Confluence < 7.19.26 / 7.20.x < 8.5.14 / 8.6.x < 8.9.5 / 9.0.1 (CONFSERVER-97657)
high
206393Apache OFBiz < 18.12.15 遠端程式碼執行 (CVE-2024-38856)
critical
206317ManageEngine PAM360 < 7.0 Build 7001 SQLi
high
206316ManageEngine Password Manager Pro < 12.4 Build 12431 SQLi
high
206305Mattermost Server 9.5.x < 9.5.8 / 9.8.x < 9.8.3 / 9.9.x < 9.9.2 / 9.10.x < 9.10.1 多個弱點 (MMSA-2024-00353/MMSA-2024-00357)
medium
206304Mattermost Server 9.10.x < 9.10.1 / 9.5.x < 9.5.8 (MMSA-2024-00352)
low
206274Magento XXE (CVE-2024-34102)
critical
206273SolarWinds Web Help Desk < 12.8.3 HF 2 硬式編碼憑證
critical
206271ManageEngine OpManager RCE (CVE-2024-5466)
high