Nessus 的 Web Servers 系列

ID名稱嚴重性
104409OpenSSL 1.1.0 < 1.1.0g 多個弱點
medium
104408OpenSSL 1.0.2 < 1.0.2m 多個弱點
medium
104358Apache Tomcat 6.0.x < 6.0.24 多種弱點
high
104357IBM BigFix Platform 9.2.x < 9.2.12 / 9.5.x < 9.5.7 多個弱點
high
103962Oracle GlassFish Server 3.0.1.x < 3.0.1.17 / 3.1.2.x < 3.1.2.18 (2017 年 10 月 CPU)
high
103838Apache 2.4.x < 2.4.28 HTTP 弱點 (OptionsBleed)
high
103782Apache Tomcat 7.0.0 < 7.0.82
high
103699Apache Tomcat 9.0.0.M1 < 9.0.1
high
103698Apache Tomcat 8.5.0 < 8.5.23
high
103697Apache Tomcat 8.0.0.RC1 < 8.0.47
high
103530HP System Management Homepage < 7.6.1 多個弱點 (HPSBMU03753)
medium
103329Apache Tomcat 7.0.0 < 7.0.81 多個弱點
high
102590Apache Tomcat 9.0.0.M1 < 9.0.0.M22 多個弱點
high
102589Apache Tomcat 8.5.0 < 8.5.16 多個弱點
high
102588Apache Tomcat 8.0.0.RC1 < 8.0.45
medium
102587Apache Tomcat 7.0.41 < 7.0.79
medium
102586IBM WebSphere Application Server 7.0.0.x < 7.0.0.43 / 8.0.0.x < 8.0.0.14 / 8.5.x < 8.5.5.12 / 9.0.0.x < 9.0.0.4 SOAP 連接器 DoS
high
102201IBM WebSphere Application Server 7.0 < 7.0.0.45 / 8.0 < 8.0.0.14 / 8.5 < 8.5.5.12 / 9.0 < 9.0.0.5 不安全的檔案權限 (PI79343)
high
102200IBM WebSphere Application Server 7.0 < 7.0.0.45 / 8.0 < 8.0.0.14 / 8.5 < 8.5.5.13 / 9.0 < 9.0.0.5 資訊洩漏 (PI82630)
low
102199IBM WebSphere Application Server 7.0 < 7.0.0.45 / 8.0 < 8.0.0.14 / 8.5 < 8.5.5.12 / 9.0 < 9.0.0.5 不明 XSS (PI82078)
medium
102019IBM BigFix Platform 9.1.x < 9.1.1328.0 / 9.2.x < 9.2.11.19 多個弱點
critical
101788Apache 2.4.x < 2.4.27 多個弱點
critical
101787Apache 2.2.x < 2.2.34 多個漏洞
critical
101165Intel Active Management Technology (AMT) Web UI 點擊劫持弱點 (INTEL-SA-00081) (遠端檢查)
medium
100995Apache 2.2.x < 2.2.33-dev / 2.4.x < 2.4.26 多個弱點
critical
100721IBM BigFix Compliance 偵測
info
100681Apache Tomcat 8.5.0 < 8.5.15
high
100669Web Application Cookie 已過期
info
100511Netscape Enterprise Server 基本驗證緩衝區溢位 RCE (EGGBASKET/XP_NS-HTTPD)
critical
100221IBM WebSphere Application Server 8.0 < 8.0.0.14 / 8.5 < 8.5.5.12 管理主控台資訊洩漏
critical
100123IBM WebSphere Application Server 7.0 < 7.0.0.45 / 8.0 < 8.0.0.14 / 8.5 < 8.5.5.12 / 9.0 < 9.0.0.4 / Liberty 17.0 < 17.0.0.2 OAuth Service Provider XSRF
high
97999Intel Management Engine 驗證繞過 (INTEL-SA-00075) (遠端檢查)
critical
97998Intel Management Engine 不安全讀寫作業 RCE (INTEL-SA-00075) (遠端檢查)
critical
99591HP OfficeJet Pro Wi-Fi Direct Support 印表機組態未經驗證存取
critical
99523Microsoft Windows Server 2003 IIS 6.0 WebDAV PROPFIND 要求處理 RCE (EXPLODINGCAN)
critical
99522Oracle GlassFish Server 3.1.2.x < 3.1.2.17 Java Server Faces 資訊洩漏 (2017 年 4 月 CPU)
low
97994Microsoft IIS 6.0 不受支援的版本偵測
critical
99368Apache Tomcat 8.5.0 < 8.5.13 多個弱點
critical
99367Apache Tomcat 8.0.0.RC1 < 8.0.43
high
99362Apache Tomcat 9.0.0.M11 < 9.0.0.M17
high
99361Apache Tomcat 8.5.7 < 8.5.11
high
99281Microsoft Windows Server 2003 R2 IIS 6.0 WebDAV PROPFIND 要求處理 RCE (EXPLODINGCAN)
critical
97858IBM WebSphere Application Server 8.0.0.10 < 8.0.0.14 / 8.5.5.3 < 8.5.5.12 / 9.0.0.0 < 9.0.0.4 OIDC 權限提升
critical
97355IBM WebSphere Application Server 7.0 < 7.0.0.43 / 8.0 < 8.0.0.14 / 8.5 < 8.5.5.12 / 9.0 < 9.0.0.3 管理主控台多個 XSS
medium
97328OpenSSL 1.1.0 < 1.1.0e 弱點
high
97145Acme thttpd 偵測
info
97144Acme thttpd < 2.26 多個弱點
high
96874OpenSSL 1.1.0 < 1.1.0d 多個弱點
medium
96873OpenSSL 1.0.2 < 1.0.2k 多個弱點
medium
96803Oracle WebLogic Java Object RMI Connect-Back 還原序列化 RCE (2017 年 1 月 CPU)
critical