Nessus 的 CGI abuses 系列

ID名称严重性
176251GitLab < 16.0.1 (CVE-2023-2825)
high
176211NoviSurvey 不安全反序列化漏洞 (CVE-2023-29492)
critical
176143WordPress 6.0 < 6.2.2
high
176109GitLab < 15.9.8 (CVE-2023-2181)
medium
176075Sophos Web Appliance 预认证命令注入 (CVE-2023-1671)
critical
176037PaperCut MF 检测
info
176036PaperCut MF 绕过身份验证 (CVE-2023-27350)
critical
175909WordPress 6.0 < 6.2.1
high
175835Jenkins Enterprise 和 Operations Center 2.346.x < 2.346.40.0.17 多个漏洞(CloudBees 安全公告 2023-05-16)
high
175782F5 Networks BIG-IQ iControl REST 任意文件上传 (K000132719)
medium
175674PaperCut NG 安全请求过滤器身份验证绕过 (CVE-2023-27351)
high
175429IBM Cognos Analytics 多个漏洞 (6986505)
critical
175414Elastic Kibana < 8.7.1 任意代码执行
high
175390Citrix ADC 和 Citrix Gateway 多个漏洞 (CTX477714)
high
175389ManageEngine ADManager Plus <= Build 7005 RCE(已弃用)
critical
175388Mattermost Server < 7.1.6 / 7.2.x < 7.7.2 信息泄露 (MMSA-2023-00138)
medium
175141GitLab 15.4 < 15.9.7 / 15.10 < 15.10.6 / 15.11 < 15.11.2 (CVE-2023-2478)
medium
175101ManageEngine ServiceDesk Plus < 14.1 Build 14105 XXE
medium
175100ManageEngine SupportCenter Plus < 14.2 Build 14200 XXE
medium
175099ManageEngine AssetExplorer < 6.9 Build 6989 XXE
medium
175098ManageEngine ServiceDesk Plus MSP < 14.2 Build 14200 XXE
medium
175050Jenkins Enterprise 和 Operations Center 2.346.x < 2.346.40.0.16 多个漏洞(CloudBees 安全公告 2023-05-03-security-advisory)
high
174996GitLab 15.10 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-2182)
high
174990GitLab 14.2 < 15.9.6 / 15.10 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-1965)
medium
174989GitLab 12.0 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-1621)
medium
174988GitLab < 15.9.6 (CVE-2023-0756)
high
174987GitLab 8.6 < 15.9.6 / 15.10 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-1178)
medium
174986GitLab 10.0 < 12.9.8/12.10 < 12.10.7/13.0 < 13.0.1 (CVE-2023-2069)
medium
174985GitLab 15.2 < 15.9.6/15.10 < 15.10.5/15.11 < 15.11.1 (CVE-2022-4376)
medium
174984GitLab 5.1 < 15.9.6 / 15.10 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-1836)
medium
174983GitLab 15.2 < 15.9.6 / 15.10 < 15.10.5 / 15.11 < 15.11.1 (CVE-2023-0805)
high
174925VMware Aria Operations for Logs 8.10.2 RCE (VMSA-2023-0007)
critical
174924VMware Aria Operations for Logs 8.6.x / 8.8.x / 8.10 / 8.10.2 命令注入 (VMSA-2023-0007)
high
174901Mattermost Server < 7.1.6 / 7.2.x < 7.7.2 / 7.8.x < 7.8.1 信息泄露 (MMSA-2023-00141)
medium
174900Mattermost Server < 7.1.6 / 7.2.x < 7.7.2 XSS (MMSA-2023-00139)
medium
174748PaperCut NG 检测
info
174747PaperCut NG 绕过身份验证 (CVE-2023-27350)
critical
174552Oracle Primavera P6 Enterprise Project Portfolio Management(2023 年 4 月 CPU)
critical
174528Oracle MySQL Enterprise Monitor(2023 年 4 月 CPU)
high
174523ForgeRock Access Management 7.x 不当授权
critical
174488Drupal 7.x < 7.96 / 9.4.x < 9.4.14 / 9.5.x < 9.5.8 / 10.x < 10.0.8 Drupal 漏洞 (SA-CORE-2023-005)
high
174471Oracle Primavera Unifier(2023 年 4 月 CPU)
critical
174447SolarWinds Platform 2023.0 < 2023.2 多个漏洞
high
174253Jenkins Enterprise 和 Operations Center 2.346.x < 2.346.40.0.15 多个漏洞(CloudBees 安全公告 2023-04-12)
high
174244ManageEngine ADSelfService Plus 6218 之前版本 DoS
high
174002Kibana ESA-2023-02
medium
174001ManageEngine OpManager 12.6.x < 12.6.141 / 12.6.154 / 12.6.169 XML 外部实体
medium
173998Zimbra Collaboration Server 8.8.x < 8.8.15 补丁 38 / 9.0.0 < 9.0.0 补丁 31 多个漏洞
critical
173922Jenkins Enterprise 和 Operations Center 2.346.x < 2.346.40.0.14 多个漏洞 (CloudBees 安全公告 2023-04-05)
high
173821GitLab 13.6 < 15.8.5 / 15.9 < 15.9.4 / 15.10 < 15.10.1 (CVE-2023-0319)
medium