CGI abuses Family for Nessus

IDNameSeverity
119422Kibana ESA-2018-17
critical
119327Kubernetes 1.x < 1.10.11 / 1.11.x < 1.11.5 / 1.12.x < 1.12.3 API Server Privilege Escalation
critical
119325Logstash JSON API Detection (deprecated)
info
119324Elasticsearch Detection (deprecated)
info
119015VMware vRealize Log Insight 4.6.x < 4.6.2 / 4.7.x < 4.7.1 Authorization Bypass Vulnerability (VMSA-2018-0028)
high
118977WordPress Plugin 'AMP for WP - Accelerated Mobile Pages' < 0.9.97.20 Multiple Vulnerabilities
medium
118935WordPress Plugin 'WP GDPR Compliance' < 1.4.3 Privilege Escalation
critical
118799Elasticsearch ESA-2018-16
medium
118798Kibana ESA-2018-18
critical
118714Oracle Primavera Gateway Multiple Vulnerabilities (Oct 2018 CPU)
critical
118713Atlassian JIRA XSRF, Open Redirect, and Access Control Bypass Vulnerabilities
medium
118594Oracle Primavera Unifier Multiple Vulnerabilities (Oct 2018 CPU)
high
118463Citrix NetScaler Gateway Cross-Site Scripting Vulnerability (CTX232199)
medium
118310jQuery-File-Upload Arbitrary File Upload Vulnerability (Remote Check)
critical
118307Drupal 7.x < 7.60 / 8.5.x < 8.5.8 / 8.6.x < 8.6.2 Drupal Multiple Vulnerabilities (SA-CORE-2018-006)
high
118202Oracle Primavera P6 Enterprise Project Portfolio Management (EPPM) Multiple Vulnerabilities (October 2018 CPU)
medium
118147Jenkins < 2.138.2 (LTS) / 2.146 Multiple Vulnerabilities
high
118069Joomla! < 3.8.13 Multiple Vulnerabilities
high
117906QNAP Photo Station WebUI Detection
info
117884DNN (DotNetNuke) 5.0.0 < 9.2.2 Multiple Vulnerabilities
medium
117861TP-Link Unauthenticated CGI Cross-Site Request Forgery (Remote)
critical
117809EMC RSA Authentication Manager < 8.3 Patch 3 Multiple Vulnerabilities (DSA-2018-152)
medium
117666Kibana ESA-2018-14
medium
117665Elasticsearch ESA-2018-15
high
117639ManageEngine Desktop Central 10 < Build 100282 Remote Privilege Escalation
high
117616Apache Hadoop YARN ResourceManager Web Interface
info
117615Apache Hadoop YARN ResourceManager Unauthenticated RCE (Remote) (Xbash)
critical
117614Symantec Messaging Gateway 10.x < 10.6.6 Multiple Vulnerabilities (SYMSA1461)
critical
117602Webmin <= 1.590 Multiple Vulnerabilities
medium
117601Apache ActiveMQ 5.x < 5.14.0 ActiveMQ Fileserver web application remote code execution (Xbash)
critical
117500PHP 7.2.x < 7.2.10 Transfer-Encoding Parameter XSS Vulnerability
medium
117499PHP 7.1.x < 7.1.22 Transfer-Encoding Parameter XSS Vulnerability
medium
117498PHP 7.0.x < 7.0.32 Transfer-Encoding Parameter XSS Vulnerability
medium
117497PHP 5.6.x < 5.6.38 Transfer-Encoding Parameter XSS Vulnerability
medium
117483Apache ActiveMQ Client 5.x < 5.15.6 TLS Hostname Verification Weakness
high
117482Apache ActiveMQ 5.14.x - 5.15.2 OpenWire Information Disclosure
low
117462Zinwave Series 3000 DAS Web Interface Default Credentials
critical
117338Atlassian JIRA ProfileLinkUserFormat Information Disclosure Vulnerability
medium
117337Jenkins < 2.121.3 / 2.138 Multiple Vulnerabilities
medium
112214Ansible Tower WebUI Detection
info
112213Ansible Tower Unsupported Version
critical
112212Ansible Tower 3.1.x < 3.1.8 / 3.2.x < 3.2.6 CSRF vulnerability
high
112211EMC RSA Archer 6.1.x, 6.2.x, 6.3.x < 6.3.0.7 and 6.4.x < 6.4.0.1 SQL Injection Vulnerability
medium
112210PHP Xdebug Module Unauthenticated RCE (exploit)
critical
112192Apache ActiveMQ 5.x < 5.15.5 Multiple Vulnerabilities
critical
112160Joomla! < 3.8.12 Multiple Vulnerabilities
critical
112115ASUSTOR Data Master < 3.1.6 Multiple Vulnerabilities
high
112064Apache Struts CVE-2018-11776 Results With No Namespace Remote Code Execution (S2-057) (remote)
high
112046Elasticsearch ESA-2018-11
high
112045Elasticsearch ESA-2018-10
medium