114238 | Atlassian Confluence < 7.19.20 路径遍历 | Web App Scanning | Component Vulnerability | 2024/9/6 | high |
114222 | Atlassian Confluence 7.20.x < 8.5.5 跨站脚本 | Web App Scanning | Component Vulnerability | 2024/9/6 | high |
114221 | Atlassian Confluence 8.7.x < 8.7.2 跨站脚本 | Web App Scanning | Component Vulnerability | 2024/9/6 | high |
114220 | Atlassian Confluence < 7.19.18 跨站脚本 | Web App Scanning | Component Vulnerability | 2024/9/6 | high |
113421 | Nginx 1.23.x < 1.23.2 多个漏洞 | Web App Scanning | Component Vulnerability | 2024/9/6 | critical |
113420 | Nginx < 1.22.1 多个漏洞 | Web App Scanning | Component Vulnerability | 2024/9/6 | critical |
112544 | 未启用 HTTP 到 HTTPS 重定向 | Web App Scanning | SSL/TLS | 2024/9/6 | medium |
98114 | XPath 注入 | Web App Scanning | Injection | 2024/8/12 | high |
98084 | 目录列表 | Web App Scanning | Web Servers | 2024/8/12 | medium |
113037 | 检测到过期的 Backbone JS Framework | Web App Scanning | Component Vulnerability | 2024/8/6 | info |
113033 | 检测到过期的 Underscore.js | Web App Scanning | Component Vulnerability | 2024/8/6 | info |
113032 | 检测到过期的 Modernizr | Web App Scanning | Component Vulnerability | 2024/8/6 | info |
113030 | 检测到过期的启动 | Web App Scanning | Component Vulnerability | 2024/8/6 | info |
113959 | GeoServer SQL 注入 | Web App Scanning | Component Vulnerability | 2024/8/1 | critical |
114382 | 缺少“Content-Type”字符集 | Web App Scanning | HTTP Security Header | 2024/7/29 | low |
114381 | Apache Hugegraph 1.0.0 < 1.3.0 远程命令执行 | Web App Scanning | Component Vulnerability | 2024/7/29 | critical |
113338 | Web 缓存中毒 | Web App Scanning | Web Applications | 2024/7/29 | high |
114363 | Apache 2.4.60 源代码泄露 | Web App Scanning | Component Vulnerability | 2024/7/22 | medium |
114360 | Apache 2.4.x < 2.4.60 多个漏洞 | Web App Scanning | Component Vulnerability | 2024/7/22 | critical |
114325 | Adobe Commerce / Magento XML 外部实体注入 (CosmicSting) | Web App Scanning | Component Vulnerability | 2024/7/18 | critical |
113117 | Magento 管理面板登录表单遭到暴力破解 | Web App Scanning | Authentication & Session | 2024/7/18 | high |
112697 | JSON Web Token 弱密钥 | Web App Scanning | Web Applications | 2024/7/1 | high |
98112 | 跨站请求伪造 | Web App Scanning | Cross Site Request Forgery | 2024/6/26 | medium |
98095 | .htaccess 文件的 LIMIT 指令中存在配置错误 | Web App Scanning | Web Servers | 2024/6/10 | medium |
113211 | HTTP 动词篡改 | Web App Scanning | Web Applications | 2024/6/10 | medium |
113136 | Wordpress 管理面板登录表单遭到暴力破解 | Web App Scanning | Authentication & Session | 2024/5/31 | high |
114281 | F5 BIG-IP Next Central Manager SQL 注入 | Web App Scanning | Component Vulnerability | 2024/5/27 | high |
114108 | Strapi < 4.8.0 私有字段敏感信息泄露 | Web App Scanning | Component Vulnerability | 2024/5/27 | medium |
114041 | Strapi Cognito 提供程序身份验证绕过 | Web App Scanning | Component Vulnerability | 2024/5/27 | high |
112570 | OpenAPI 导入失败 | Web App Scanning | General | 2024/5/27 | info |
112569 | OpenAPI 导入成功 | Web App Scanning | General | 2024/5/27 | info |
114237 | 开放代理 | Web App Scanning | Web Applications | 2024/5/16 | high |
113165 | Apache mod_negotiation 备用文件名泄露 | Web App Scanning | Web Servers | 2024/5/16 | medium |
98136 | 目标信息 | Web App Scanning | General | 2024/4/26 | info |
114273 | CrushFTP < 10.7.1/11.x < 11.1.0 VFS 沙盒逃逸 | Web App Scanning | Component Vulnerability | 2024/4/24 | critical |
98715 | 检测到宽松的 HTTP 严格传输安全策略 | Web App Scanning | HTTP Security Header | 2024/4/22 | low |
112554 | 检测到宽松的内容安全策略 | Web App Scanning | HTTP Security Header | 2024/4/22 | low |
112552 | 已弃用的内容安全策略 | Web App Scanning | HTTP Security Header | 2024/4/22 | low |
98142 | Selenium 身份验证失败 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
98141 | Selenium 身份验证成功 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
98140 | Cookie 身份验证失败 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
98139 | Cookie 身份验证成功 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
98035 | 登录表单身份验证成功 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
98034 | 登录表单身份验证失败 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
113013 | 持有者标记身份验证失败 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
113012 | 持有者标记身份验证成功 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
113011 | API 密钥身份验证失败 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
113010 | API 密钥身份验证成功 | Web App Scanning | Authentication & Session | 2024/4/9 | info |
114134 | HTML/CSS 注入 | Web App Scanning | Injection | 2024/4/3 | medium |
98642 | 检测到 Magento 管理面板登录表单 | Web App Scanning | Web Applications | 2024/4/2 | medium |