CGI abuses Family for Nessus

IDNameSeverity
104633PHP 7.1.x < 7.1.11 Multiple Vulnerabilities
critical
104632PHP 7.0.x < 7.0.25 Multiple Vulnerabilities
critical
104631PHP 5.6.x < 5.6.32 Multiple Vulnerabilities
critical
104572Adobe Connect < 9.7 Multiple Vulnerabilities (APSB17-35)
critical
104571ONVIF Snapshot Username and Password Leak
medium
104478Joomla! 1.5.0 < 3.8.2 Multiple Vulnerabilities
critical
104391EMC VMAX VASA Provider Virtual Appliance < 8.4.0.512 Authentication Bypass Vulnerability
critical
104390EMC Unisphere for VMAX Virtual Appliance < 8.4.0.15 Authentication Bypass Vulnerability
critical
104389EMC Solutions Enabler Virtual Appliance < 8.4.0.15 Authentication Bypass Vulnerability
critical
104380EMC RSA Authentication Manager < 8.2 SP1 Patch 5 Reflected Cross-Site Scripting (ESA-2017-134)
medium
104356WordPress < 4.8.3 Multiple Vulnerabilities
critical
104353Apache Solr 5.x < 5.5.5 / 6.x < 6.6.2 / 7.x < 7.1.0 Multiple Vulnerabilities
critical
104276ONVIF Username and Password leak
medium
104144MVPower DVR Remote Command Execution
critical
104129Linksys E1500/E2500 Authenticated Command Execution
critical
104128NETGEAR DGN Remote Unauthenticated Command Execution
critical
104126D-Link DIR-300L/600L Remote Command Execution
critical
104124Vocran NVR Remote Command Execution
critical
104104IBM OpenAdmin Tool welcomeService.php Remote Code Execution
critical
104102AVTech Multiple Vulnerabilities
critical
104047Oracle Integrated Lights Out Manager (ILOM) < 3.2.6 Multiple Vulnerabilities (uncredentialed check)
high
103987Oracle WebCenter Content Server Component Unspecified Issue (October 2017 CPU)
high
103928NUUO NVR Web Interface RCE
critical
103874SolarWinds Log and Event Manager < 6.3.1 Hotfix 4 Insecure HTTP Update Download MitM Code Execution
high
103818EMC RSA Archer < 6.2.0.5 Multiple Vulnerabilities
high
103789D-Link DIR Router Authenication Bypass
high
103732HP UCMDB Server BeanUtils Java Deserialization RCE
high
103568IBM WebSphere Portal (swg22008586)
high
103536MySQL Enterprise Monitor 3.2.x < 3.2.9.2249 / 3.3.x < 3.3.5.3292 / 3.4.x < 3.4.3.4225 Multiple Vulnerabilities (October 2017 CPU)
high
103513Grandstream Phone Web UI Information Disclosure
medium
103504Apache Solr < 6.6.1 Kerberos Plugin Delegation Token Handling Remote Information Disclosure
high
103467Citrix NetScaler Authentication Bypass Vulnerability (CTX227928)
high
103383Joomla! 1.5.0 < 3.8.0 Multiple Vulnerabilities
critical
103382EMC Data Protection Advisor < 6.4.130 Hardcoded Password Vulnerability
critical
103358WordPress < 4.8.2 Multiple Vulnerabilities
critical
103219D-Link DIR Router Missing Authentication Check
critical
103188IBM BigFix Remote Control < 9.1.4 Authentication Bypass
high
103114D-Link DIR 850L Router Local File Inclusion
critical
103054Ivanti Policy Secure Detection
info
103050Western Digital TV Multiple Vulnerabilities
high
102978Cisco Unified Operations Manager 8.6 SQL Injection Vulnerability
medium
102977Apache Struts 2 REST Plugin XStream XML Request Deserialization RCE
high
102959HP Operations Orchestration 10.x < 10.80 Remote Code Execution
critical
102918Apache Struts 2.3.x Struts 1 plugin RCE (remote)
critical
102916AT&T U-verse Arris Modems NVG589 / NVG599 / 5268AC Multiple Vulnerabilities (SharknATTo)
high
102862SolarWinds Log and Event Manager < 6.3.1 Hotfix 3 Jailbreak and Privilege Escalation
high
102803HP iLO 4 <= 2.52 RCE
critical
102714Drupal 8.x < 8.3.7 Multiple Vulnerabilities (SA-CORE-2017-004)
critical
102528Symantec Messaging Gateway 10.x < 10.6.3-267 Multiple Vulnerabilities (SYM17-006)
high
102495Zabbix 3.2.x < 3.2.7 Multiple Vulnerabilities
critical