Nessus 的 CGI abuses 系列

ID名称严重性
178944Atlassian Confluence 8.x < 8.3.2 / 8.4.0 RCE (CONFSERVER-88265)
high
178939Atlassian Confluence < 7.13.20 / 7.19.8 / 8.2.0 (CONFSERVER-88221)
high
178903Jenkins LTS < 2.401.3 / Jenkins weekly < 2.416 多个漏洞
medium
178850IBM Cognos Analytics 多个漏洞 (7012621)
medium
178814Oracle Primavera Unifier(2023 年 7 月 CPU)
high
178776TYPO3 8.7.42 < 8.7.53 ELTS / 9.5.29 < 9.5.42 ELTS / 10.4.19 < 10.4.39 ELTS / 11.3.2 < 11.5.30 / 12.0.0 < 12.4.4 XSS (TYPO3-CORE-SA-2023-002)
medium
178764TYPO3 9.5.0 < 9.5.42 ELTS / 10.0.0 < 10.4.39 ELTS / 11.0.0 < 11.5.30 XSS (TYPO3-CORE-SA-2023-004)
medium
178763TYPO3 9.4.0 < 9.5.42 ELTS / 10.0.0 < 10.4.39 ELTS / 11.0.0 < 11.5.30 / 12.0.0 < 12.4.4 (TYPO3-CORE-SA-2023-003)
medium
1787208.0.0.410 之前的 Veritas InfoScale Operations Manager 不安全文件上传 (VTS23-009)
high
178719Oracle MySQL Enterprise Monitor DOS(2023 年 7 月 CPU)
critical
178617Zimbra Collaboration Server 8.8.x < 8.8.15 补丁 40 多个漏洞
critical
178616Zimbra Collaboration Server 9.0.0 < 9.0.0 补丁 33 多个漏洞
critical
178484Oracle Primavera Gateway(2023 年 7 月 CPU)
high
178442Citrix ADC 和 Citrix Gateway 多个漏洞 (CTX561482)
critical
178032ManageEngine ADManager Plus < Build 7183 XXE
medium
178030Openfire 绕过认证 (CVE-2023-32315)
high
177997GitLab 12.8 < 15.11.11 / 16.0 < 16.0.7 / 16.1 < 16.1.2 (CVE-2023-3484)
medium
177995Atlassian Confluence < 7.13.15 / 7.14.x < 7.19.7 / 7.20.x < 8.2.0 (CONFSERVER-82403)
medium
177769Atlassian Jira < 8.20.20 / 9.4.x < 9.4.4 / 9.5.0 (JRASERVER-75331)
medium
177752GitLab 15.1 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-2620)
low
177751GitLab 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-3102)
medium
177750GitLab 13.7 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-1936)
medium
177749GitLab 13.7 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-2576)
medium
177748GitLab 7.14 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-2200)
medium
177747GitLab 13.6 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-3363)
low
177746GitLab 10.3 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-3424)
high
177745GitLab 15.3 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-3444)
medium
177744GitLab 13.10 < 15.11.10 / 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-2190)
medium
177743GitLab 16.0 < 16.0.6 / 16.1 < 16.1.1 (CVE-2023-3362)
medium
177741Openfire 3.10 < 4.6.8 / 4.7 < 4.7.5 绕过认证
high
177740Liferay DXP 7.4.13.70 < x < 7.4.13.77 多个漏洞
high
177739Liferay DXP 7.4.13.70 < 7.4.13.74 XSS
medium
177633FortiNAC - keyUpload 小脚本中的文件名或路径被外部控制 (FG-IR-22-300)
critical
177632TP-Link Archer AX21 命令注入 (CVE-2023-1389)
high
177587Barracuda Email Security Gateway < 9.2.0.008 命令注入 (CVE-2023-2868)
critical
177523Liferay Portal CE 7.4.3.70 < 7.4.3.74 XSS
medium
177522Liferay Portal CE 7.4.3.70 < x < 7.4.3.77 多个漏洞
high
177515D-Link D-View 8 路径遍历 RCE (CVE-2023-32165)
critical
177511PHP 8.2.x < 8.2.7
medium
177510PHP 8.1.x < 8.1.20
medium
177509PHP 8.0.x < 8.0.29
medium
177395Jenkins LTS < 2.401.1/Jenkins Weekly < 2.400 XSRF
high
177394Jenkins 插件多个漏洞(2023 年 6 月 14 日)
high
177375Dell PowerProtect Cyber Recovery 身份验证绕过 (DSA-2023-201)
high
177347VMWare Aria Operations for Networks 多个漏洞 (VMSA-2023-0012)
critical
177102SonicWall SMA100 目录遍历漏洞 (SNWLID-2019-0018)
high
176861ManageEngine ServiceDesk Plus < 14.0 Build 14004 RCE
critical
176856ManageEngine ServiceDesk Plus MSP < 13.0 Build 13001 RCE
critical
176696GitLab 8.7 < 15.10.8 / 15.11 < 15.11.7 / 16.0 < 16.0.2 (CVE-2023-2198)
high
176695GitLab 15.4.0 < 15.10.8/15.11 < 15.11.7/16.0 < 16.0.2 (CVE-2023-2132)
high