Nessus 的 Windows 系列

ID名称严重性
102713NetSarang Xshell 5 特洛伊木马后门程序 (ShadowPad)
critical
102712NetSarang Xmanager 5 特洛伊木马后门程序 (ShadowPad)
critical
102711NetSarang Xmanager Enterprise 5 特洛伊木马后门程序 (ShadowPad)
critical
102710NetSarang Xlpd 5 特洛伊木马后门程序 (ShadowPad)
critical
102709NetSarang Xftp 5 特洛伊木马后门程序 (ShadowPad)
critical
102683Microsoft Windows Search 远程代码执行漏洞 (CVE-2017-8543)
critical
102682Foxit PhantomPDF < 7.3.15 多个漏洞
high
102494Git for Windows 2.7.x < 2.7.6 / 2.8.x < 2.8.6 / 2.9.x < 2.9.5 / 2.10.x < 2.10.4 / 2.11.x < 2.11.13 / 2.12.x < 2.12.4 / 2.13.x < 2.13.5 / 2.14.x < 2.14.1 恶意 SSH URL 命令执行
high
102428Adobe Reader < 11.0.21 / 2015.006.30355 / 2017.011.30066 / 2017.012.20098 多个漏洞 (APSB17-24)
critical
102427Adobe Acrobat < 11.0.21 / 2015.006.30355 / 2017.011.30066 / 2017.012.20098 多个漏洞 (APSB17-24)
critical
102359Mozilla Firefox < 55.0
critical
102358Mozilla Firefox ESR < 52.3
critical
102355McAfee Security Scan Plus < 3.11.587.1 保护级别 UI 元素下载 MitM 命令执行 (TS102714)
critical
102324Adobe Digital Editions < 4.5.6 多个漏洞 (APSB17-27)
critical
102262Adobe Flash Player <= 26.0.0.137 多个漏洞 (APSB17-23)
high
102204安装有 Symantec Management Console
info
102203Symantec Management Console 多个 XSS 和 XXE 漏洞 (SYM17-005)
high
102083已安装 Microsoft Access(凭据检查)
info
102082Microsoft Access 不受支持的版本检测
critical
101980Google Chrome < 60.0.3112.78 多个漏洞
high
101954Apple iTunes < 12.6.2 多个漏洞(凭据检查)
high
101898Wireshark 2.0.x < 2.0.14 / 2.2.x < 2.2.8 多个 DoS
high
101843Oracle Java SE 多个漏洞(2017 年 7 月 CPU)
critical
101839Oracle JRockit R28.3.14 多个漏洞(2017 年 7 月 CPU)
high
101838IBM WebSphere MQ 9.0.1 < 9.0.3 多个漏洞
high
101817Cisco WebEx Extension for Firefox < 1.0.12 ‘atgpcext’ 库 GPC 清理 RCE (cisco-sa-20170717-webex)
high
101816Cisco WebEx Extension for Chrome < 1.0.12 ‘atgpcext’ 库 GPC 清理 RCE (cisco-sa-20170717-webex)
high
101772Mozilla Thunderbird < 52.2
critical
101524Foxit Reader < 8.3.1 多个漏洞
high
101523Foxit PhantomPDF < 8.3.1 多个漏洞
high
101521IBM Integration Bus 8.x < 8.0.0.9 / 9.x < 9.0.0.8 / 10.x < 10.0.0.8 多个漏洞
medium
101362Adobe Flash Player <= 26.0.0.131 多种漏洞 (APSB17-21)
high
101298Cisco WebEx Network Recording Player ARF 文件 RCE (cisco-sa-20170621-wnrp)
high
101297HPE Network Node Manager i (NNMi) 多个漏洞 (HPESBGN03762)
critical
101295安装有 Veritas Backup Exec Remote Agent
info
101294Veritas Backup Exec Remote Agent 14.1.x < 14.1.1786.1126 / 14.2.x < 14.2.1180.3160 / 16.0.x < 16.0.1142.1327 释放后使用 RCE (VTS17-006)
critical
99236IBM WebSphere Portal 8.5.0 < 8.5.0 CF14 / 9.0.0 < 9.0.0 CF14 多个漏洞
critical
101168IBM Tivoli Monitoring SOAP 界面不安全的配置远程 SOAP 查询信息泄露
medium
101163IBM DB2 Connect 9.7 < FP11 Special Build 36621 / 10.1 < FP6 Special Build 36610 / 10.5 < FP8 Special Build 36605 / 11.1.2 < FP2 多个漏洞 (Windows)
high
101162IBM DB2 9.7 < FP11 Special Build 36621 / 10.1 < FP6 Special Build 36610 / 10.5 < FP8 Special Build 36605 / 11.1.2 < FP2 多个漏洞 (Windows)
high
101160Telerik UI for ASP.NET AJAX 安装进度 (Windows)
info
101159Telerik UI for ASP.NET AJAX 加密漏洞
critical
101114安装有 Microsoft Entra Connect
info
101113Microsoft Security Advisory 4033453:Azure AD Connect 中的漏洞允许权限提升
high
101085安装有 Skype
info
101084Skype 7.2.x / 7.35.x / 7.36.x < 7.37 MSFTEDIT.DLL RDP 会话剪贴板处理 RCE
high
101027Microsoft Malware Protection Engine < 1.1.13903 RCE
high
100994已停用 Windows Credential Guard
info
100991Google Chrome < 59.0.3071.104 多个漏洞
high
100962Ubisoft uPlay 检测
info