Nessus 的 Web Servers 系列

ID名称严重性
242629Apache 2.4.x < 2.4.65
medium
242626Grafana Labs 集成 URL 暴露给查看器 (CVE-2025-3415)
medium
242625Grafana Labs XSS (CVE-2025-6023)
high
242566已安装 SAP NetWeaver Visual Composer Metadata Uploader
info
242565SAP NetWeaver 应用程序服务器 JAR 检测
info
242564SAP Netweaver Visual Composer 不安全的反序列化 (3604119)
critical
242286IBM WebSphere Application Server 9.x < 9.0.5.26 / Liberty 17.0.0.3 < 25.0.0.8 (7239955)
low
242285IBM WebSphere Application Server 9.x < 9.0.5.25 / Liberty 17.0.0.3 < 25.0.0.8 DoS (7239856)
high
242272Oracle HTTP Server2025 年 7 月 CPU
high
242271Oracle HTTP Server2025 年 7 月 CPU
high
242132Grafana Labs < 10.4.17+security-01、11.2.8+security-01、11.3.5+security-01、11.4.3+security-01、11.5.3+security-01、11.6.0+security-01 不当授权 (CVE-2025-3454)
medium
242117SAP NetWeaver AS ABAP 多个漏洞
medium
242116Apache Tomcat 9.0.76 < 9.0.104 多个漏洞
high
242053IBM WebSphere eXtreme Scale 8.6.1 < 8.6.1.6 (7239492)
high
241984Apache 2.4.x < 2.4.64 多个漏洞
high
241707SAP NetWeaver AS Java 多个漏洞2025 年 7 月
critical
241706Apache Tomcat 11.0.0.M1 < 11.0.9 多个漏洞
high
241705Apache Tomcat 10.1.0.M1 < 10.1.43 多个漏洞
high
241680Apache Tomcat 9.0.0.M1 < 9.0.107 多个漏洞
high
241364Grafana Labs 11.1.0 < 11.2.8+security-01、11.3.5+security-01、11.4.3+security-01、11.5.3+security-01、11.6.0+security-01 XSS (CVE-2025-2703)
medium
241355Grafana Labs 10.4.x < 10.4.19、11.2.x < 11.2.10、11.3.x < 11.3.7、11.4 < 11.4.5、11.5 < 11.5.5、11.6 < 11.6.2、12.0.x < 12.0.1 访问控制不当漏洞 (CVE-2025-3580)
medium
241294DLink DIR-859 1.05 和 1.06B01 路径遍历
critical
240850Grafana Labs < 11.6.2 输入验证不当 (CVE-2025-1088)
low
240709IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.25 (7237967)
critical
240060Apache Tomcat 9.0.0.M1 < 9.0.106 多个漏洞
high
240059Apache Tomcat 11.0.0.M1 < 11.0.8 多个漏洞
high
240058Apache Tomcat 10.1.0.M1 < 10.1.42 多个漏洞
high
238431SAP NetWeaver Visual Composer 多个漏洞(2025 年 6 月)
critical
238430SAP NetWeaver AS ABAP 缺少授权检查 (3600840)
critical
238429SAP NetWeaver AS ABAP 授权绕过漏洞
medium
237905Grafana Labs < < 11.6.1+security-01 授权绕过 (CVE-2025-3260)
medium
237500Apache Tomcat 11.0.0.M1 < 11.0.7
medium
237499Apache Tomcat 10.1.0.M1 < 10.1.41
medium
237498Apache Tomcat 9.0.0.M1 < 9.0.105
medium
237112OpenSSL 3.5.0 < 3.5.1 漏洞
medium
236840SAP NetWeaver Visual Composer 多个漏洞(2025 年 5 月)
critical
235034Apache Tomcat 9.0.0.M1 < 9.0.104 多个漏洞
high
235033Apache Tomcat 10.1.0.M1 < 10.1.40 多个漏洞
high
235032Apache Tomcat 11.0.0.M1 < 11.0.6 多个漏洞
high
234858Cisco Nexus 仪表盘 Web 检测
info
234847SAP Netweaver Visual Composer 检测
info
234802IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.24 (7231514)
medium
234227SAP NetWeaver AS ABAP XSS (3559307)
medium
234226SAP NetWeaver AS ABAP Access Control (3554667)
high
234225SAP NetWeaver AS ABAP 授权绕过 (3565944)
medium
234224SAP NetWeaver AS ABAP 授权绕过漏洞
medium
234223SAP NetWeaver AS ABAP Access Control (3568778)
medium
233965CrushFTP < 11.3.1 身份验证绕过 (CVE-2025-31161) (直接检查)
critical
233191SimpleHelp 的安全更新 < 5.5.8
critical
233190检测 SimpleHelp
info