Web App Scanning 的 Component Vulnerability 系列

ID名稱嚴重性
113524Kibana 7.x < 7.13.0 開放式重新導向
medium
113523Kibana < 6.8.16 開放式重新導向
medium
113522Kibana 7.9.0 < 7.14.1 路徑遊走
high
113521Kibana 7.10.2 < 7.14.1 程式碼執行
high
113520Kibana 7.14.0 HTML 插入
high
113519Kibana 7.15.0 < 7.17.1 多個弱點
medium
113518Kibana 7.0.0 < 7.17.5 跨網站指令碼
medium
113517Kibana 8.0.0 授權不足
medium
113516Kibana 7.7.0 < 7.17.1 授權不足
medium
113515PHP 8.0.x < 8.0.27 整數溢位
critical
113514PHP 8.1.x < 8.1.14 整數溢位
critical
113513PHP 8.2.x < 8.2.1 整數溢位
critical
113505October CMS 1.0.471 / 1.1.1 < 1.1.5 不當驗證
critical
113512Apache Tomcat 8.5.x < 8.5.83 要求走私弱點
high
113511Apache Tomcat 9.0.0-M1 < 9.0.68 要求走私弱點
high
113510Apache Tomcat 10.0.0-M1 < 10.0.27 要求走私弱點
high
113509Apache Tomcat 10.1.0-M1 < 10.1.1 要求走私弱點
high
113508Apache Tomcat 8.5.x < 8.5.84 JsonErrorReportValve 插入
high
113507Apache Tomcat 9.0.0-M1 < 9.0.69 JsonErrorReportValve 插入
high
113506Apache Tomcat 10.1.0-M1 < 10.1.2 JsonErrorReportValve 插入
high
113504Slimstat Analytics Plugin for WordPress < 3.9.2 跨網站指令碼
medium
113503WordPress < 2.1 跨網站要求偽造
high
113502WordPress 5.0.x < 5.8.0 跨網站指令碼
medium
113501WordPress 5.8.0 beta 多個弱點
medium
113500WordPress < 5.8.0 外掛程式混淆
critical
113499WP Symposium Plugin for WordPress < 15.8 SQL 插入
critical
113498WP e-Commerce Shop Styling Plugin for WordPress < 1.8 程式碼插入
critical
113497Social Invitations Plugin for WordPress < 1.4.4.3 跨網站指令碼
medium
113496WP RESTful Plugin for WordPress 跨網站指令碼
medium
113495WP Cron Dashboard Plugin for WordPress < 1.1.6 跨網站指令碼
medium
113494WP Ultimate Email Marketer Plugin for WordPress 多個弱點
critical
113493Cross-RSS Plugin for WordPress 任意檔案讀取
high
113492Apptha WordPress Video Gallery Plugin for WordPress < 2.8.0 SQL 插入
critical
113491WP Easy Post Types Plugin for WordPress < 1.4.4 跨網站指令碼
medium
113490WordPress Mobile Pack Plugin for WordPress < 2.0.2 敏感資訊洩漏
high
113489WordPress Classifieds Plugin Plugin for WordPress < 3.0 SQL 插入
critical
113488Advanced Dewplayer Plugin for WordPress < 1.3 路徑遊走
high
113485YITH WooCommerce Gift Cards Premium Plugin for WordPress < 3.20.0 任意檔案上傳
critical
113487Easy WP SMTP Plugin for WordPress < 1.4.4 敏感資訊洩漏
high
113486Easy WP SMTP Plugin for WordPress < 1.5.0 不安全的還原序列化
high
113484WP Database Backup Plugin for WordPress < 5.9 儲存型跨網站指令碼
medium
113483WP Live Chat Support Plugin for WordPress < 8.0.18 跨網站指令碼
medium
113482WP Statistics Plugin for WordPress < 12.0.2 跨網站指令碼
medium
113481WP Statistics Plugin for WordPress < 12.0.5 多個跨網站指令碼弱點
medium
113480WP Statistics Plugin for WordPress < 12.0.6 跨網站指令碼
medium
113479All In One WP Security & Firewall Plugin for WordPress < 3.8.3 多個 SQL 插入
high
113478All In One WP Security & Firewall Plugin for WordPress < 3.8.8 SQL 插入
critical
113477Elementor Plugin for WordPress < 3.6.3 錯誤授權
high
113476WP-PostViews Plugin for WordPress < 1.63 跨網站要求偽造
high
113475WP eCommerce Plugin for WordPress < 3.8.7.6 SQL 插入
critical