Nessus 的 Web Servers 系列

ID名稱嚴重性
241364Grafana Labs 11.1.0 < 11.2.8+security-01、11.3.5+security-01、11.4.3+security-01、11.5.3+security-01、11.6.0+security-01 XSS (CVE-2025-2703)
medium
241355Grafana Labs 10.4.x < 10.4.19、11.2.x < 11.2.10、11.3.x < 11.3.7、11.4 < 11.4.5、11.5 < 11.5.5、11.6 < 11.6.2、12.0.x < 12.0.1 不當存取控制 (CVE-2025-3580)
medium
241294DLink DIR-859 1.05 & 1.06B01 路徑遊走
critical
240850Grafana Labs < 11.6.2 不當輸入驗證 (CVE-2025-1088)
low
240709IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.25 (7237967)
critical
240060Apache Tomcat 9.0.0.M1 < 9.0.106 多個弱點
high
240059Apache Tomcat 11.0.0.M1 < 11.0.8 多個弱點
high
240058Apache Tomcat 10.1.0.M1 < 10.1.42 多個弱點
high
238431SAP Netweaver Visual Composer 多個弱點 (2025 年 6 月)
critical
238430SAP NetWeaver AS ABAP 缺少授權檢查 (3600840)
critical
238429SAP NetWeaver AS ABAP 授權繞過弱點
medium
237905Grafana Labs < 11.6.1+security-01 授權繞過 (CVE-2025-3260)
medium
237500Apache Tomcat 11.0.0.M1 < 11.0.7
low
237499Apache Tomcat 10.1.0.M1 < 10.1.41
low
237498Apache Tomcat 9.0.0.M1 < 9.0.105
low
237112OpenSSL 3.5.0 < 3.5.1 弱點
medium
236840SAP Netweaver Visual Composer 多個弱點 (2025 年 5 月)
critical
235034Apache Tomcat 9.0.0.M1 < 9.0.104 多個弱點
high
235033Apache Tomcat 10.1.0.M1 < 10.1.40 多個弱點
high
235032Apache Tomcat 11.0.0.M1 < 11.0.6 多個弱點
high
234858Cisco Nexus 儀表板 Web 偵測
info
234847SAP Netweaver Visual Composer 偵測
info
234802IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.24 (7231514)
medium
234227SAP NetWeaver AS ABAP XSS (3559307)
medium
234226SAP NetWeaver AS ABAP 存取控制 (3554667)
high
234225SAP NetWeaver AS ABAP 授權繞過 (3565944)
medium
234224SAP NetWeaver AS ABAP 授權繞過弱點
medium
234223SAP NetWeaver AS ABAP 存取控制 (3568778)
medium
233965CrushFTP < 11.3.1 驗證繞過 (CVE-2025-31161) (直接檢查)
critical
233191SimpleHelp < 的安全性更新 5.5.8
critical
233190SimpleHelp 偵測
info
232824IBM WebSphere eXtreme Scale 8.6.1 < 8.6.1.6 DoS (7185951)
medium
232695SAP NetWeaver AS Java XSS (2025 年 3 月)
medium
232530Apache Tomcat 11.0.0.M1 < 11.0.3
critical
232529Apache Tomcat 10.1.0.M1 < 10.1.35
critical
232528Apache Tomcat 9.0.0.M1 < 9.0.99
critical
232291Apache Guacamole Web 偵測
info
216270SAP NetWeaver AS Java 多個弱點 (2025 年 2 月)
medium
215000Grafana Labs 10.4.x < 10.4.15 / 11.0.x < 11.0.11 / 11.1.x < 11.1.11 / 11.2.x < 11.2.6 / 11.3.x < 11.3.3 / 11.4.x < 11.4.1、11.5.0 (cve-2024-11741)
medium
214871IBM WebSphere Application Server Liberty 21.0.0.2 < 25.0.0.2 DoS (7181925)
medium
214870IBM WebSphere Application Server Liberty 20.0.0.6 < 24.0.0.12 DoS (7174997)
medium
214869IBM WebSphere Application Server Liberty 20.0.0.12 < 24.0.0.11 DoS (7173097)
high
214582Oracle HTTP Server (2025 年 1 月 CPU)
critical
214497SAP NetWeaver AS ABAP (3536461)
medium
214496SAP NetWeaver AS ABAP 資訊洩漏 (3537476)
critical
214495SAP NetWeaver AS ABAP (3550708)
critical
214494SAP NetWeaver AS ABAP 多個弱點
high
214493SAP NetWeaver AS ABAP 特權提升 (3537476)
critical
214335SAP NetWeaver AS Java 多個弱點 (2025 年 1 月)
medium
213081SAP NetWeaver AS Java 多個弱點 (2024 年 12 月)
critical