Nessus 的 Windows 系列

ID名称严重性
99136Google Chrome < 57.0.2987.133 多个漏洞
high
99126Mozilla Firefox ESR < 52.0.1 CreateImageBitmap RCE
critical
99125Mozilla Firefox < 52.0.1 CreateImageBitmap RCE
critical
99105VMware Workstation 12.x < 12.5.5 多种漏洞 (VMSA-2017-0006)
high
97990VMware Player 12.x < 12.5.4 拖放特性客户机到主机代码执行 (VMSA-2017-0005)
critical
97947Pidgin < 2.12.0 libpurple/util.c purple_markup_unescape_entity() XML 实体处理 RCE
critical
97941VMware Workstation 12.x < 12.5.4 拖放特性客户机到主机代码执行 (VMSA-2017-0005)
critical
97892ImageMagick 6.x < 6.9.7-8 / 7.x < 7.0.4-8 多种 DoS
high
97891ImageMagick 6.x < 6.9.7-5 / 7.x < 7.0.4-5 tga.c WriteTGAImage() 断言失败 DoS
medium
97890ImageMagick 6.x < 6.9.7-9 / 7.x < 7.0.4-10 webp.c ReadWEBPImage() 文件描述符耗尽 DoS
medium
97889HP Performance Center < 12.53 Patch 4 libxdrutil.dll mxdr_string() RCE
critical
97888HPE LoadRunner < 12.53 Patch 4 libxdrutil.dll mxdr_string() RCE
critical
97860安装有 HPE Smart Storage Administrator
info
97859HPE Smart Storage Administrator < 2.60.18.0 RCE
high
97835Adobe Shockwave Player <= 12.2.7.197 DLL 劫持 (APSB17-08)
high
97834VMware Workstation 12.x < 12.5.3 多个漏洞 (VMSA-2017-0003)
high
97833MS17-010:Microsoft Windows SMB 服务器的安全更新 (4013389) (ETERNALBLUE) (ETERNALCHAMPION) (ETERNALROMANCE) (ETERNALSYNERGY) (WannaCry) (EternalRocks) (Petya)(无凭据检查)
high
97727Adobe Flash Player <= 24.0.0.221 多个漏洞 (APSB17-07)
critical
97724Google Chrome < 57.0.2987.98 多个漏洞
high
97663Mozilla Thunderbird < 45.8 多个漏洞
critical
97661Symantec Endpoint Protection Client 12.1.x < 12.1 RU6 MP7 本地权限提升 (SYM17-002)
high
97639Mozilla Firefox < 52.0 多个漏洞
critical
97638Mozilla Firefox ESR < 45.8 多个漏洞
critical
97579安装有 IBM Integration Bus
info
97578IBM Integration Bus 8.x < 8.0.0.8 / 9.x < 9.0.0.6 / 10.x < 10.0.0.5 SOAP FLOWS XXE DoS
critical
97577IBM Integration Bus 8.x < 8.0.0.8 / 9.x < 9.0.0.7 / 10.x < 10.0.0.7 点击劫持
medium
97574Wireshark 2.0.x < 2.0.11 / 2.2.x < 2.2.5 多个 DoS
high
97552HPE LoadRunner < 12.50 mchan.dll 数据包处理无效内存访问 DoS
high
96663IBM WebSphere MQ 7.0.1.x / 7.1.0.x < 7.1.0.9 / 7.5.0.x < 7.5.0.8 / 8.0.0.x < 8.0.0.6 / 9.0.0.x < 9.0.0.1 多个漏洞
critical
97496LibreOffice < 5.1.6 / 5.2.5 / 5.3.0 多个漏洞
critical
97386NVIDIA Windows GPU 显示驱动程序 375.x < 376.67 / 378.x < 378.52 多个漏洞
high
97352McAfee ePolicy Orchestrator 5.1.x < 5.1.3 HF1167014 / 5.3.x < 5.3.1 HF1179709 / 5.3.x < 5.3.2 HF1167013 SQL 盲注 (SB10187)
critical
97226Cisco AnyConnect Secure Mobility Client 4.0.x < 4.3.05017 / 4.4.x < 4.4.00243 SBL 模块权限升级
high
97214Adobe Digital Editions < 4.5.4 多个漏洞 (APSB17-05)
critical
97142Adobe Flash Player <= 24.0.0.194 多个漏洞 (APSB17-04)
critical
97140Ipswitch WhatsUp Gold < 16.5.0 WrFreeFormText.asp sUniqueID Parameter Blind SQLi(证书式)
high
97086已启用服务器消息块 (SMB) 协议版本 1
info
97085Microsoft Office 不受支持的渠道版本检测
critical
96908Cisco WebEx for Internet Explorer RCE (cisco-sa-20170124-webex)
high
96907Cisco WebEx for Firefox RCE (cisco-sa-20170124-webex)
high
96905Mozilla Thunderbird < 45.7 多个漏洞
critical
96830Apple iTunes < 12.5.5 多个漏洞(凭据检查)
high
96828Google Chrome < 56.0.2924.76 多个漏洞
medium
96776Mozilla Firefox < 51.0 多个漏洞
critical
96775Mozilla Firefox ESR < 45.7 多个漏洞
critical
96772Cisco WebEx Extension for Chrome RCE (cisco-sa-20170124-webex)
high
96765Wireshark 2.0.x < 2.0.10 / 2.2.x < 2.2.4 多个 DoS
high
96721HP Version Control Repository Manager < 7.6.0 多个漏洞
high
96630Citrix Provisioning Services 7.x < 7.12 多个漏洞 (CTX219580)
critical
96628Oracle Java SE 多个漏洞(2017 年 1 月 CPU)(SWEET32)
critical