Nessus 的 CGI abuses 系列

ID名称严重性
209236Atlassian Confluence 7.19.x < 7.19.26 (CONFSERVER-98189)
high
209235Nagios XI < 2024R1 API 密钥安全
critical
209234Atlassian Confluence 6.0 < 7.19.23 / 7.20.x < 8.5.9 / 8.6.x < 8.9.1 (CONFSERVER-97794)
high
209228SolarWinds Web Help Desk < 12.8.3 HF 3 Java 反序列化 RCE
critical
209226Zimbra Collaboration Server 9.0.0 < 9.0.0 Patch 42,10.0 < 10.0.10,10.1.0 < 10.1.2 CSRF
medium
209186Drupal 10.2.x < 10.2.10 Drupal 漏洞 (SA-CORE-2024-002)
medium
209165SolarWinds Platform 2024.2.0 < 2024.4 多个漏洞 XSS
high
209139Atlassian Confluence < 7.19.26/7.20.x < 8.5.12/8.6.x < 8.9.4/9.0.1 (CONFSERVER-97723)
high
209138Atlassian Confluence < 7.19.21/7.20.x < 8.5.8/8.6.x < 8.9.1 (CONFSERVER-97711)
high
208956Splunk Enterprise 9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1002)
medium
208950Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3 (SVD-2024-1011)
medium
208949Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1008)
medium
208948Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3 (SVD-2024-1003)
high
208947Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1001)
high
208944Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1006)
medium
208943Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3 (SVD-2024-1004)
medium
208942Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3 (SVD-2024-1010)
medium
208941Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3 (SVD-2024-1005)
medium
208940Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1009)
medium
208939Splunk Enterprise 9.1.0 < 9.1.6、9.2.0 < 9.2.3、9.3.0 < 9.3.1 (SVD-2024-1007)
low
208739GitLab 11.4 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-5005)
medium
208738GitLab 11.6 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-8970)
high
208737GitLab 12.5 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-9164)
high
208698GitLab 8.16 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-9623)
medium
208697GitLab 15.10 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-8977)
high
208696GitLab 17.1 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-6530)
medium
208695GitLab 16.6 < 17.2.9/17.3 < 17.3.5/17.4 < 17.4.2 (CVE-2024-9596)
medium
208260TYPO3 10.0.0 < 10.4.46 ELTS / 11.0.0 < 11.5.40 / 12.0.0 < 12.4.21 / 13.0.0 < 13.3.1 (TYPO3-CORE-SA-2024-012)
medium
208259TYPO3 10.0.0 < 10.4.46 ELTS / 11.0.0 < 11.5.40 / 12.0.0 < 12.4.21 / 13.0.0 < 13.3.1 (TYPO3-CORE-SA-2024-011)
medium
208098Jenkins LTS < 2.462.3 / Jenkins weekly < 2.479 多个漏洞
medium
208097Jenkins 插件多个漏洞(2024 年 10 月 2 日)
high
208085GitHub Enterprise 3.10.x < 3.10.6 / 3.11.x < 3.11.14 / 3.12.x < 3.12.8 / 3.13.x < 3.13.3 (ghsa_75w9_x6cm_hvwg)
medium
208084GitHub Enterprise 3.10.x < 3.10.16/3.11.x < 3.11.14/3.12.x < 3.12.8/3.13.x < 3.13.3 (ghsa_5wm9_5344_qrrj)
critical
208083GitHub Enterprise 3.11.x < 3.11.14 / 3.12.x < 3.12.8 / 3.13.x < 3.13.3 (ghsa_w49g_9f3f_c384)
medium
208073MantisBT < 2.26.4 信息泄露 (0034640)
medium
208035Zimbra Collaboration Server 8.0.0 < 8.8.15 Patch 46、9.0.0 < 9.0.0 Patch 41、10.0 < 10.0.9、10.1.0 < 10.1.1 多个漏洞
critical
207864CUPS cups-browsed 未经认证的远程打印机注册 (CVE-2024-47176)
medium
207855PHP 8.1.x < 8.1.30 多个漏洞
high
207839GitLab 15.6 < 17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-8974)
medium
207838GitLab 16.5 < 17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-4278)
low
207837GitLab 16.0 < 17.2.8/17.3 < 17.3.4/17.4 < 17.4.1 (CVE-2024-4099)
medium
207822PHP 8.2.x < 8.2.24 多个漏洞
high
207821PHP 8.3.x < 8.3.12 多个漏洞
high
207740IBM Cognos Analytics 11.2.x < 11.2.4 FP4 Interim Fix 2 / 12.0.x < 12.0.3 Interim Fix 2 (7160700)
medium
207454Mattermost 桌面应用程序 < 5.9.0 (Windows) (MMSA-2024-00307)
high
207453Mattermost 桌面应用程序 < 5.9.0 (Windows/Unix) (MMSA-2024-00372)
medium
207343Fortinet FortiAnalyzer 授权绕过 (FG-IR-23-204)
medium
207297GitLab 11.1 < 17.1.7/17.2 < 17.2.5/17.3 < 17.3.2 (CVE-2024-4283)
medium
207296GitLab 16.7 < 17.1.7/17.3 < 17.2.5/17.3 < 17.3.2 (CVE-2024-6685)
medium
207243Apache OFBiz < 18.12.16 多种漏洞
critical