CGI abuses Family for Nessus

IDNameSeverity
110775Atlassian Jira < 7.2.15 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110774Atlassian FishEye < 4.3.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110773Atlassian Crucible < 4.3.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110772Atlassian Crowd < 2.11.2 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110771Atlassian Confluence < 6.1.3 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110770Atlassian Bitbucket < 4.14.4 OAuth Plugin IconUriServlet Internal Network Resource Disclosure CSRF
medium
110769Atlassian Bamboo < 6.0.0 OAuth plugin allows arbitrary HTTP requests to be proxied
medium
110768Kubernetes unprivileged API access
high
110767Kubernetes info API access
medium
110766Trend Micro Control Manager GetPassword() SQLi
high
110722phpMyAdmin 4.8.x < 4.8.2 Vulnerability (PMASA-2018-4)
high
110612Oracle GlassFish Server URL normalization Denial of Service
high
110557VX Search HTTP POST Request Handling Remote Stack Buffer Overflow
high
110556Sync Breeze HTTP POST Request Handling Remote Stack Buffer Overflow
critical
110555Dup Scout HTTP POST Request Handling Remote Stack Buffer Overflow
critical
110554Disk Sorter HTTP POST Request Handling Remote Stack Buffer Overflow
critical
110553Disk Savvy HTTP POST Request Handling Remote Stack Buffer Overflow
critical
110482UserPro Plugin for WordPress up_auto_log Parameter Remote Authentication Bypass
critical
110417IBM InfoSphere Information Governance Catalog Detection
info
110416IBM InfoSphere IGC Multiple Vulnerabilities
high
110326NetApp OnTAP Web Detection
info
110287CyberArk Password Vault Web Access .NET Object Deserialization (Direct Check)
critical
110227Joomla! < 3.8.8 Multiple Vulnerabilities
critical
110192Oracle GlassFish Server Path Traversal
high
110125Atlassian JIRA 7.6.5 / 7.7.x < 7.7.4 / 7.8.x < 7.8.4 / 7.9.x < 7.9.2 Multiple Vulnerabilities (SB18-141)
medium
109943Logstash JSON API Detection
info
109942Kibana Detection
info
109941Elasticsearch Detection
info
109921Ivanti Connect Secure Detection
info
109917HP Service Manager 9.30.x / 9.31.x / 9.32.x / 9.33.x / 9.34.x / 9.35.x < 9.35.6007 / 9.40.x / 9.41.x < 9.41.6000 / 9.50.x / 9.51.x Remote SQL Injection
medium
109914HP Network Automation 10.0x < 10.00.023 / 10.1x < 10.11.06 / 10.2x < 10.21.05 / 10.3x < 10.30.03 / 10.4x < 10.40.01 / 10.5x < 10.50.01 Multiple Vulnerabilities
high
109726Adobe <= 9.7.5 Connect Authentication Bypass Vulnerability (APSB18-18, APSB18-22)
critical
109683EMC RSA Authentication Manager < 8.3 Patch 1 Multiple Vulnerabilities (DSA-2018-086)
medium
109579PHP 7.2.x < 7.2.5 Stack Buffer Overflow
high
109578PHP 7.1.x < 7.1.17 Multiple Vulnerabilities
high
109577PHP 7.0.x < 7.0.30 Multiple Vulnerabilities
high
109576PHP 5.6.x < 5.6.36 Multiple Vulnerabilities
high
109575SonicWALL Global Management System (GMS) / Analyzer sgms Webapp File Deletion
high
109551Jenkins < 2.107.2 / 2.116 Multiple Vulnerabilities
medium
109344Drupal 7.x < 7.59 / 8.4.x < 8.4.8 / 8.5.x < 8.5.3 Remote Code Execution Vulnerability (SA-CORE-2018-004)
critical
109320Atlassian JIRA < 4.2.1 Multiple Vulnerabilities
medium
109319Atlassian JIRA < 4.2 Multiple Vulnerabilities
medium
109208Dell iDRAC Products Multiple Vulnerabilities (Mar 2018)
critical
109164Oracle Primavera Unifier Multiple Vulnerabilities (April 2018 CPU)
critical
109163Oracle Primavera P6 Enterprise Project Portfolio Management (EPPM) Multiple Vulnerabilities (April 2018 CPU)
high
109059Belkin N750 Router 1.10.22 Command Injection
critical
109041Drupal Remote Code Execution Vulnerability (SA-CORE-2018-002) (exploit)
critical
109034WordPress < 4.9.5 Multiple Vulnerabilities
medium
108953CyberArk Password Vault Web Access Detection
info
108952CyberArk Password Vault Web Access .NET Object Deserialization
critical