Nessus 的 CGI abuses 系列

ID名称严重性
187433GitLab 10.0 < 14.6.5/14.7 < 14.7.4/14.8 < 14.8.2 (CVE-2022-0751)
high
187432GitLab 0.0 < 15.5.7 / 15.6 < 15.6.4 / 15.7 < 15.7.2 (CVE-2022-4037)
high
187431GitLab 12.0 < 14.1.7 / 14.2 < 14.2.5 / 14.3 < 14.3.1 (CVE-2021-39892)
medium
187430GitLab 14.5 < 15.1.6 / 15.2 < 15.2.4 / 15.3 < 15.3.2 (CVE-2022-3331)
medium
187163Nagios XI < 5.11.3 多个漏洞
critical
187123Elastic Kibana 7.13.0 < 7.17.16、8.0 < 8.11.2 信息泄露 (ESA-2023-27)
medium
187081Atlassian Bitbucket < 7.21.16 / 8.8.7 / 8.9.4 / 8.10.3 / 8.11.3 / 8.12.2 RCE
critical
187053VMware vRealize Network Insight (vRNI) 多种漏洞 (VMSA-2022-0031)
critical
186902Joomla 5.0.0 < 5.0.1 / 1.6.x < 4.4.1 Joomla 5.0.1 和 4.4.1 安全和缺陷补丁版本 (5901-joomla-5-0-1-and-4-4-1-security-and-bug-fix-release)
high
186888GitLab 0 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-3904)
high
186887GitLab 8.17 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-3511)
low
186886GitLab 0 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-6051)
medium
186885GitLab 9.3 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-5061)
medium
186884GitLab 16.3 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-5512)
medium
186883GitLab 11.6 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-6680)
high
186882GitLab 16.0 < 16.4.4 / 16.5 < 16.5.4 / 16.6 < 16.6.2 (CVE-2023-3907)
high
186836Jenkins 插件多个漏洞 (2023-12-13)
high
186819Atlassian Confluence < Companion-2.0.0 / < Companion-2.0.1 (CONFSERVER-93518)
critical
186818Atlassian Confluence 6.13.x < 7.13.18 / 7.14.x < 7.19.10 / 7.20.x < 8.3.1 (CONFSERVER-91463)
critical
186660GitLab 11.3 < 16.4.3 / 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-3949)
medium
186659GitLab 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-6396)
high
186658GitLab 10.5 < 16.4.3 / 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-4912)
medium
186657GitLab 12.1 < 16.4.3 / 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-3443)
medium
186656GitLab 0 < 16.4.3 / 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-5226)
high
186655GitLab 13.2 < 16.4.3/16.5 < 16.5.3/16.6 < 16.6.1 (CVE-2023-3964)
medium
186654GitLab 15.10 < 16.6.1 / 16.4 < 16.4.3 / 16.5 < 16.5.3 (CVE-2023-6033)
medium
186653GitLab 16.2 < 16.4.3 / 16.5 < 16.5.3 / 16.6 < 16.6.1 (CVE-2023-5995)
high
186652GitLab 9.2 < 16.4.3/16.5 < 16.5.3/16.6 < 16.6.1 (CVE-2023-4317)
medium
186651Atlassian Confluence 4.x < 7.19.17 / 7.20.x < 8.4.5 / 8.5.x < 8.5.4 / 8.6.x < 8.6.2 / 8.7.x < 8.7.1 (CONFSERVER-93502)
high
186617WordPress 6.0 < 6.4.2
high
186537ManageEngine NetFlow Analyzer 12.5.x < 12.5.657 / 12.6.x < 12.6.002 / 12.6.104 / 12.6.118 认证绕过
high
186536Trellix Enterprise Security Manager < 11.6.7 命令注入
high
186511SolarWinds Platform 2023.3.x < 2023.3.1 多个漏洞
high
186469Fortinet FortiSIEM 远程未经身份验证的操作系统命令注入 (FG-IR-23-130)
critical
186468SolarWinds Platform 2023.3.0 < 2023.4.2 SQLi
high
186467Trellix Enterprise Security Manager < 11.6.8 SSRF
medium
186466Trellix Enterprise Security Manager < 11.6.9 命令注入
high
186425Report Server 中存在 Fortinet FortiSIEM 操作系统命令注入漏洞 (FG-IR-23-135)
critical
186424Elastic Kibana 8.x < 8.11.1 信息泄露 (ESA-2023-25)
medium
186420Jenkins 插件多个漏洞(2023 年 11 月 29 日)
critical
186417Liferay Portal 7.4.3.94 < 7.4.3.95 XSS
medium
186407Arcserve UDP 控制台身份验证绕过 (CVE-2023-41999)
critical
186360Tenda AC 路由器 RCE (CVE-2020-10987)
critical
186359Tenda AC 路由器堆栈缓冲区溢出 (CVE-2021-31755)
critical
186352Apache Kylin 2.3.x < 2.3.3 / 2.4.x < 2.4.2 / 2.5.x < 2.5.3 / 2.6.x < 2.6.6 / 3.x < 3.0.2 命令注入 (CVE-2020-1956)
high
186351Apache Kylin Web UI 检测
info
186331Tenda AC 路由器命令注入 (CVE-2018-14558)
critical
186228Atlassian Confluence 7.13.x / 7.19.1 < 7.19.16 (CONFSERVER-93173)
high
186218Atlassian Confluence 7.19.x < 7.19.16 (CONFSERVER-93168)
high
186217Atlassian Confluence 7.19.x < 7.19.16 / 8.3.x < 8.5.3 / 8.6.x < 8.6.1 (CONFSERVER-93163)
high