Nessus 的 Web Servers 系列

ID名称严重性
162500Apache Tomcat 10.1.0.M1 < 10.1.0。M17
medium
162499Apache Tomcat 10.0.0.M1 < 10.0.23
medium
162498Apache Tomcat 9.0.30 < 9.0.65
medium
162420OpenSSL 1.1.1 < 1.1.1p 漏洞
critical
162419OpenSSL 1.0.2 < 1.0.2zf 漏洞
critical
162418OpenSSL 3.0.0 < 3.0.4 漏洞
critical
162414SAP NetWeaver AS Java 信息泄露漏洞 (Enterprise Portal) (3059764)
medium
162413SAP NetWeaver AS Java 日志记录不足
medium
162396SAP NetWeaver ABAP 错误的访问控制 (3158375)
critical
162321IBM WebSphere Application Server 欺骗漏洞 (6587947)
medium
162316SAP NetWeaver AS Java 信息泄露漏洞 (2256846)
medium
161948Apache 2.4.x < 2.4.54 多个漏洞
critical
161698Nginx Plus < R24P1 1 字节内存覆盖 RCE
high
161697nginx R8 < R18-P1 多个漏洞
high
161696Nginx Plus R1 < R15-P2 / R16 < R16-P1 多个漏洞
medium
161695Nginx Plus > R13 数据泄露漏洞
high
161665SAP NetWeaver AS ABAP 和代码注入漏洞 (3119365)
critical
161664SAP NetWeaver AS ABAP 和代码注入漏洞 (3123196)
medium
161454Apache 2.4.x < 2.4.52 mod_lua 缓冲区溢出漏洞
critical
161371IBM WebSphere Application Server Liberty 17.0.0.3 < 22.0.0.5 信息泄露漏洞 (6585704)
medium
161370IBM WebSphere Application Server Liberty 17.0.0.3 < 22.0.0.5 身份伪造漏洞 (6586734)
medium
161186SAP NetWeaver AS ABAP 多个漏洞(2022 年 1 月)
high
161185SAP NetWeaver AS ASAP 和 AS Java 内存损坏漏洞 (3145702)
high
161184SAP NetWeaver AS Java XSS (3145046)
medium
161181Apache Tomcat 8.5.0 < 8.5.76
high
161159Apache Tomcat 9.0.0.M1 < 9.0.21
high
160894Apache Tomcat 9.0.13 < 9.0.63
high
160893Apache Tomcat 10.0.0.M1 < 10.0.21
high
160892Apache Tomcat 10.1.0.M1 < 10.1.0。M15
high
160891Apache Tomcat 8.5.38 < 8.5.79
high
160480OpenSSL 1.0.2 < 1.0.2ze 漏洞
critical
160477OpenSSL 1.1.1 < 1.1.1o 漏洞
critical
160473OpenSSL 3.0.0 < 3.0.3 多种漏洞
critical
160298Apache APISIX Dashboard 检测
info
159947Oracle HTTP Server(2022 年 4 月 CPU)
critical
159550网站接受以明文 HTTP 传输的信用卡数据
medium
159549网站接受信用卡数据
info
159464Apache Tomcat 9.0.0.M1 < 9.0.62 Spring4Shell CVE-2021-43980
low
159463Apache Tomcat 10.0.0.M1 < 10.0.20 Spring4Shell (CVE-2022-22965) 缓解措施
low
159462Apache Tomcat 8.x < 8.5.78 Spring4Shell CVE-2021-43980
low
158975OpenSSL 3.0.0 < 3.0.2 漏洞
high
158974OpenSSL 1.1.1 < 1.1.1n 漏洞
high
158973OpenSSL 1.0.2 < 1.0.2zd 漏洞
high
158900Apache 2.4.x < 2.4.53 多个漏洞
critical
158562IBM WebSphere Application Server Liberty 17.0.0.3 < 22.0.0.3 点击劫持 (6559044)
medium
158561IBM WebSphere Application Server 9.x < 9.0.5.12 点击劫持
medium
158094Apache Solr 未经身份验证的访问信息泄露
medium
158042SAP NetWeaver AS ABAP 多个漏洞(2022 年 2 月)
high
157866IBM WebSphere Application Server Liberty 21.0.0.10 <= 21.0.0.12 信息泄露 (6541530)
medium
157848SAP NetWeaver AS 同步失效漏洞 (ICMAD)
critical