Nessus 的 Web Servers 系列

ID名称严重性
235034Apache Tomcat 9.0.0.M1 < 9.0.104 多个漏洞
high
235033Apache Tomcat 10.1.0.M1 < 10.1.40 多个漏洞
high
235032Apache Tomcat 11.0.0.M1 < 11.0.6 多个漏洞
high
234858Cisco Nexus 仪表盘 Web 检测
info
234847SAP Netweaver Visual Composer 检测
info
234802IBM WebSphere Application Server 8.5.x < 8.5.5.28 / 9.x < 9.0.5.24 (7231514)
medium
234227SAP NetWeaver AS ABAP XSS (3559307)
medium
234226SAP NetWeaver AS ABAP Access Control (3554667)
high
234225SAP NetWeaver AS ABAP 授权绕过 (3565944)
medium
234224SAP NetWeaver AS ABAP 授权绕过漏洞
medium
234223SAP NetWeaver AS ABAP Access Control (3568778)
medium
233965CrushFTP < 11.3.1 身份验证绕过 (CVE-2025-31161) (直接检查)
critical
233191SimpleHelp 的安全更新 < 5.5.8
critical
233190检测 SimpleHelp
info
232824IBM WebSphere eXtreme Scale 8.6.1 < 8.6.1.6 DoS (7185951)
medium
232695SAP NetWeaver AS Java XSS(2025 年 3 月)
medium
232530Apache Tomcat 11.0.0.M1 < 11.0.3
critical
232529Apache Tomcat 10.1.0.M1 < 10.1.35
critical
232528Apache Tomcat 9.0.0.M1 < 9.0.99
critical
232291Apache Guacamole 网页检测
info
216270SAP NetWeaver AS Java 多个漏洞(2025 年 2 月)
medium
215000Grafana Labs 10.4.x < 10.4.15 / 11.0.x < 11.0.11 / 11.1.x < 11.1.11 / 11.2.x < 11.2.6 / 11.3.x < 11.3.3 / 11.4.x < 11.4.1、11.5.0 (cve-2024-11741)
medium
214871IBM WebSphere Application Server Liberty 21.0.0.2 < 25.0.0.2 DoS (7181925)
medium
214870IBM WebSphere Application Server Liberty 20.0.0.6 < 24.0.0.12 DoS (7174997)
medium
214869IBM WebSphere Application Server Liberty 20.0.0.12 < 24.0.0.11 DoS (7173097)
medium
214582Oracle HTTP Server(2025 年 1 月 CPU)
critical
214497SAP NetWeaver AS ABAP (3536461)
medium
214496SAP NetWeaver AS ABAP 信息泄露 (3537476)
critical
214495SAP NetWeaver AS ABAP (3550708)
critical
214494SAP NetWeaver AS ABAP 多个漏洞
high
214493SAP NetWeaver AS ABAP 特权提升 (3537476)
critical
214335SAP NetWeaver AS Java 多个漏洞(2025 年 1 月)
medium
213081SAP NetWeaver AS Java 多个漏洞(2024 年 12 月)
critical
213078Apache Tomcat 9.0.0.M1 < 9.0.98 多个漏洞
critical
213077Apache Tomcat 10.1.0.M1 < 10.1.34 多个漏洞
critical
213076Apache Tomcat 11.0.0.M1 < 11.0.2 多个漏洞
critical
213044SAP NetWeaver AS ABAP 特权提升 (3536361)
medium
213043SAP NetWeaver AS ABAP 信息泄露 (3469791)
high
211636Draytek VigorConnect 未经身份验证的 LFI (CVE-2021-20124)
high
211633Grafana Labs 特权提升 (CVE-2024-9476)
medium
211576Grafana Labs SQL 表达式允许 RCE (CVE-2024-9264)
high
211519Apache Tomcat 11.0.0 < 11.0.1
medium
211518Apache Tomcat 9.0.96 < 9.0.97
medium
211517Apache Tomcat 10.1.31 < 10.1.33
medium
211506Apache Tomcat 11.0.0、M23 < 11.0.0 多个漏洞
critical
211504Apache Tomcat 10.1.27 < 10.1.31 多个漏洞
critical
211503Apache Tomcat 9.0.92 < 9.0.96 多个漏洞
critical
210957SAP NetWeaver AS ABAP 空指针取消引用 (3504390)
medium
210956SAP NetWeaver AS ABAP 信息泄露 (3508947)
medium
210955Azure CycleCloud 的安全更新(2024 年 11 月)
critical