Nessus 的 Firewalls 系列

ID名稱嚴重性
148111Squid 2.x < 4.14 / 5.x < 5.0.5 (SQUID-2020: 11)
high
147661Fortinet FortiOS <= 6.2.5 / 6.4 <= 6.4.2 流量繞過 (FG-IR-20-172)
high
146433pfSense < 2.4.5 多個弱點
critical
146430pfSense < 2.4.4-p3 多個弱點
high
146206pfSense 2.4.x < 2.4.5-p1 多個弱點
high
146059pfSense 2.4.x < 2.4.4-p1 多個弱點 (SA-18_09)
high
144948Fortinet FortiOS < 6.0.11 / 6.2 < 6.2.5 / 6.4 < 6.4.2 資訊洩露 (FG-IR-20-103)
medium
144585Trend Micro IWSVA 6.5 < 6.5 Build 1919 多個弱點
critical
143482Fortinet FortiGate 6.2.2 < 6.2.6 / 6.4.x < 6.4.2 XSS (FG-IR-20-068)
medium
143045Fortinet FortiOS < 6.2.5 純文字資訊洩漏 (FG-IR-20-009)
medium
142491Palo Alto Networks PAN-OS VPN 啟用偵測
info
141567Fortinet FortiOS < 5.6.13 / 6.0 < 6.0.11 / 6.1 < 6.2.5 / 6.3 < 6.4.2 堆積型緩衝區溢位 (FG-IR-20-082)
critical
141474SonicWall SonicOS 緩衝區溢位弱點
critical
141122Fortinet FortiOS < 6.0.10 / 6.2.x < 6.2.4 / 6.4.x < 6.4.1不當驗證 (FG-IR-19-283)
critical
141121Fortinet FortiOS < 5.6.13 / 6.0 < 6.0.11 緩衝區溢位 (FG-IR-20-083)
critical
139923Squid 2.x < 4.13 / 5.x < 5.0.4 (SQUID-2020: 8 和 SQUID-2020: 10)
medium
139912Squid 2.x < 4.12 / 5.x < 5.0.3 (SQUID-2020: 5、 SQUID-2020: 6 & SQUID-2020: 7)
high
139547不當檢查憑證撤銷 (FG-IR-19-144)
high
139546不當檢查憑證撤銷 (FG-IR-19-144)
high
139031Trend Micro InterScan Web Security Virtual Appliance 偵測
info
139030Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 多個弱點 (000253095)
critical
136175Sophos XG Firewall - SQL 插入
critical
134891Check Point Gaia 作業系統系統管理員密碼截斷 (sk156192)
high
134890Check Point 本機權限提升
high
134563Check Point Security Gateway 拒絕服務 (sk161812)
high
134228Fortinet FortiOS 5.x >= 5.4.0 / 6.x < 6.0.9 / 6.2.x < 6.2.2 URL 重新導向弱點 (FG-IR-19-179)
medium
133358Fortinet FortiOS < 6.2.3 多個弱點 (FG-IR-19-217)
high
132317Fortinet FortiOS < 5.6.10 / 6.0 < 6.0.7 / 6.2.x < 6.2.1 易遭受攻擊的加密 (FG-IR-19-007)
medium
131320Fortinet FortiOS < 6.0.7 or 6.2.2 SSL VPN 入口網站不當輸入驗證 (FG-IR-19-236)
medium
131283Fortinet FortiOS < 6.0.7 資訊洩露 MitM (FG-IR-18-100)
medium
131185Fortinet FortiOS < 5.6.11 / 6.0.0 < 6.0.7 / 6.2.0 < 6.2.2 資訊洩露 (FG-IR-19-134)
medium
130209FortiOS DRBG 熵不足 (FG-IR-19-186)
high
129782Fortinet FortiGate 5.2.0 < 5.6.11 / 6.0.x < 6.0.5 XSS (FG-IR-19-034)
medium
128552Fortinet FortiOS SSL VPN 目錄遊走弱點 (FG-IR-18-384) (直接檢查)
critical
128329Symantec ProxySG 6.5 < 6.5.10.15 / 6.6 < 6.7.4.2 XSS 與資訊洩漏弱點 (SA1472)
medium
128303Symantec ProxySG 6.5 / 6.6 / 6.7 < 6.7.4.141 OpenSSL 拒絕服務弱點 (SA1462)
high
128283Check Point Gaia 作業系統開放介面及預設密碼 (sk145612)
critical
128278Fortinet FortiOS 5.6.0 < 5.6.8 / 6.0.x < 6.0.5 在 SSL VPN 上有多個 pre-auth XSS 弱點 (FG-IR-18-383)
medium
128149Check Point Gaia 作業系統系統管理員密碼截斷 (sk155172)
critical
127134Fortinet FortiGate < 6.2.1 資訊洩露 (FG-IR-19-037)
medium
127107SonicWall SonicOS 防火牆多個管理弱點 (URGENT/11)
critical
125889Fortinet FortiOS < 6.0.5 SSL VPN web 入口網站主機標頭重新導向 (FG-IR-19-002)
medium
125888Fortinet FortiOS 5.4.1 < 5.4.11 / 5.6.x < 5.6.9 / 6.0.x < 6.0.5 SSL VPN 安全性繞過 (FG-IR-18-389)
high
125887Fortinet FortiOS < 6.0.5 SSL VPN 堆積緩衝區溢位 (FG-IR-18-388)
medium
125886Fortinet FortiOS <= 5.4, 5.6.x < 5.6.8, 6.0.x < 6.0.5 SSL VPN 緩衝區溢位 (FG-IR-18-387)
high
125885Fortinet FortiOS 5.6.3 < 5.6.8 / 6.0.x < 6.0.5 SSL VPN 目錄遊走弱點 (FG-IR-18-384)
critical
124328Fortinet FortiManager 未加密密碼弱點 (FG-IR-18-051)
high
124324Fortinet FortiGate <= 5.4.x / 5.6.x < 5.6.11 / 6.x < 6.2.0 管理權限提升 (FG-IR-17-053)
high
124280Fortinet FortiGate < 5.4.11 / 5.6.x < 5.6.8 / 6.x < 6.0.3 LDAP 認證洩漏 (FG-IR-18-230)
high
122855Fortinet FortiOS 5.6.0 遠端程式碼執行 (FG-IR-18-018)
critical