Nessus 的 Web Servers 系列

ID名称严重性
213077Apache Tomcat 10.1.0.M1 < 10.1.34 多个漏洞
critical
213076Apache Tomcat 11.0.0.M1 < 11.0.2 多个漏洞
critical
213044SAP NetWeaver AS ABAP 特权提升 (3536361)
medium
213043SAP NetWeaver AS ABAP 信息泄露 (3469791)
high
211636Draytek VigorConnect 未经身份验证的 LFI (CVE-2021-20124)
high
211633Grafana Labs 特权提升 (CVE-2024-9476)
medium
211576Grafana Labs SQL 表达式允许 RCE (CVE-2024-9264)
high
211519Apache Tomcat 11.0.0 < 11.0.1
medium
211518Apache Tomcat 9.0.96 < 9.0.97
medium
211517Apache Tomcat 10.1.31 < 10.1.33
medium
211506Apache Tomcat 11.0.0、M23 < 11.0.0 多个漏洞
critical
211504Apache Tomcat 10.1.27 < 10.1.31 多个漏洞
critical
211503Apache Tomcat 9.0.92 < 9.0.96 多个漏洞
critical
210957SAP NetWeaver AS ABAP 空指针取消引用 (3504390)
medium
210956SAP NetWeaver AS ABAP 信息泄露 (3508947)
medium
210955Azure CycleCloud 的安全更新(2024 年 11 月)
critical
210953Apache RocketMQ < 4.9.6 / 5.0.x < 5.1.1 RCE
critical
210932IBM WebSphere Application Server 8.5.x < 8.5.5.27 / 9.x < 9.0.5.22 (7174745)
medium
210931IBM WebSphere Application Server 8.5.x < 8.5.5.27/9.x < 9.0.5.22 XSS (7175393)
medium
210930IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7175229)
medium
210894SAP NetWeaver AS Java 多个漏洞(2024 年 11 月)
medium
210450Apache 2.4.x < 2.4.62 多个漏洞 (Windows)
high
209154OpenSSL 3.1.0 < 3.1.8 漏洞
medium
209153OpenSSL 3.2.0 < 3.2.4 漏洞
medium
209152OpenSSL 1.0.2 < 1.0.2zl 漏洞
medium
209151OpenSSL 3.3.0 < 3.3.3 漏洞
medium
209150OpenSSL 3.0.0 < 3.0.16 漏洞
medium
209149OpenSSL 1.1.1 < 1.1.1zb 漏洞
medium
208028IBM WebSphere Application Server 8.5.x < 8.5.5.27/9.x < 9.0.5.22 XSS (7171755)
medium
208027Grafana Labs 错误权限 (cve-2024-8118)
medium
207242SAP NetWeaver AS Java XSS (3505503)
medium
207241SAP NetWeaver AS ABAP 多个漏洞 (3488039)
medium
207240SAP NetWeaver AS ABAP 授权缺失 (3496410)
low
207239SAP NetWeaver AS ABAP 信息泄露 (3507252)
low
207229Azure CycleCloud 的安全更新(2024 年 9 月)
high
206652Rejetto HTTP File Server 2.x <= 2.3m RCE (CVE-2024-23692)
critical
206334IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7166876)
high
205886Apache OFBiz 路径遍历 (CVE-2024-32113)
critical
205644IBM WebSphere Application Server 8.5.x < 8.5.5.27 / 9.x < 9.0.5.21 信息泄露 (7165511)
medium
205643IBM WebSphere Application Server Liberty 17.0.0.3 < 24.0.0.9 信息泄露漏洞 (7165502)
high
205614SAP NetWeaver AS ABAP 授权缺失 (3494349)
medium
205613SAP NetWeaver AS ABAP 错误的访问控制 (3468102)
medium
205612SAP NetWeaver AS Java 缺少授权 (3438085)
medium
205459Azure CycleCloud 的安全更新(2024 年 8 月)
high
205388Apache RocketMQ < 5.3.0 信息泄露 (CVE-2024-23321)
high
205310Apache Traffic Server 8.x < 8.1.11/9.x < 9.2.5 多个漏洞
high
204917DLink DIR 信息泄露 (PT-2011-30)
medium
204695TeamCity Server < 2024.7 多个漏洞
critical
202723Oracle HTTP Server(2024 年 7 月 CPU)
critical
202577Apache 2.4.60 < 2.4.62 多个漏洞
medium