Nessus 的 Web Servers 系列

ID名称严重性
241355Grafana Labs 10.4.x < 10.4.19、11.2.x < 11.2.10、11.3.x < 11.3.7、11.4 < 11.4.5、11.5 < 11.5.5、11.6 < 11.6.2、12.0.x < 12.0.1 访问控制不当漏洞 (CVE-2025-3580)
medium
241294DLink DIR-859 1.05 和 1.06B01 路径遍历
critical
240850Grafana Labs < 11.6.2 输入验证不当 (CVE-2025-1088)
low
240709IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.25 (7237967)
critical
240060Apache Tomcat 9.0.0.M1 < 9.0.106 多个漏洞
high
240059Apache Tomcat 11.0.0.M1 < 11.0.8 多个漏洞
high
240058Apache Tomcat 10.1.0.M1 < 10.1.42 多个漏洞
high
238431SAP NetWeaver Visual Composer 多个漏洞(2025 年 6 月)
critical
238430SAP NetWeaver AS ABAP 缺少授权检查 (3600840)
critical
238429SAP NetWeaver AS ABAP 授权绕过漏洞
medium
237905Grafana Labs < < 11.6.1+security-01 授权绕过 (CVE-2025-3260)
medium
237500Apache Tomcat 11.0.0.M1 < 11.0.7
low
237499Apache Tomcat 10.1.0.M1 < 10.1.41
low
237498Apache Tomcat 9.0.0.M1 < 9.0.105
low
237112OpenSSL 3.5.0 < 3.5.1 漏洞
medium
236840SAP NetWeaver Visual Composer 多个漏洞(2025 年 5 月)
critical
235034Apache Tomcat 9.0.0.M1 < 9.0.104 多个漏洞
high
235033Apache Tomcat 10.1.0.M1 < 10.1.40 多个漏洞
high
235032Apache Tomcat 11.0.0.M1 < 11.0.6 多个漏洞
high
234858Cisco Nexus 仪表盘 Web 检测
info
234847SAP Netweaver Visual Composer 检测
info
234802IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.24 (7231514)
medium
234227SAP NetWeaver AS ABAP XSS (3559307)
medium
234226SAP NetWeaver AS ABAP Access Control (3554667)
high
234225SAP NetWeaver AS ABAP 授权绕过 (3565944)
medium
234224SAP NetWeaver AS ABAP 授权绕过漏洞
medium
234223SAP NetWeaver AS ABAP Access Control (3568778)
medium
233965CrushFTP < 11.3.1 身份验证绕过 (CVE-2025-31161) (直接检查)
critical
233191SimpleHelp 的安全更新 < 5.5.8
critical
233190检测 SimpleHelp
info
232824IBM WebSphere eXtreme Scale 8.6.1 < 8.6.1.6 DoS (7185951)
medium
232695SAP NetWeaver AS Java XSS(2025 年 3 月)
medium
232530Apache Tomcat 11.0.0.M1 < 11.0.3
critical
232529Apache Tomcat 10.1.0.M1 < 10.1.35
critical
232528Apache Tomcat 9.0.0.M1 < 9.0.99
critical
232291Apache Guacamole 网页检测
info
216270SAP NetWeaver AS Java 多个漏洞(2025 年 2 月)
medium
215000Grafana Labs 10.4.x < 10.4.15 / 11.0.x < 11.0.11 / 11.1.x < 11.1.11 / 11.2.x < 11.2.6 / 11.3.x < 11.3.3 / 11.4.x < 11.4.1、11.5.0 (cve-2024-11741)
medium
214871IBM WebSphere Application Server Liberty 21.0.0.2 < 25.0.0.2 DoS (7181925)
medium
214870IBM WebSphere Application Server Liberty 20.0.0.6 < 24.0.0.12 DoS (7174997)
medium
214869IBM WebSphere Application Server Liberty 20.0.0.12 < 24.0.0.11 DoS (7173097)
high
214582Oracle HTTP Server(2025 年 1 月 CPU)
critical
214497SAP NetWeaver AS ABAP (3536461)
medium
214496SAP NetWeaver AS ABAP 信息泄露 (3537476)
critical
214495SAP NetWeaver AS ABAP (3550708)
critical
214494SAP NetWeaver AS ABAP 多个漏洞
high
214493SAP NetWeaver AS ABAP 特权提升 (3537476)
critical
214335SAP NetWeaver AS Java 多个漏洞(2025 年 1 月)
medium
213081SAP NetWeaver AS Java 多个漏洞(2024 年 12 月)
critical
213078Apache Tomcat 9.0.0.M1 < 9.0.98 多个漏洞
critical