CGI abuses Family for Nessus

IDNameSeverity
105771PHP 5.6.x < 5.6.33 Multiple Vulnerabilities
medium
105732Western Digital MyCloud Unauthenticated File Upload
critical
105587IBM WebSphere Portal Information Disclosure
medium
105509Symantec Messaging Gateway 10.x < 10.6.4 Directory Traversal Vulnerability (SYM17-016)
medium
105508JoomGallery for Joomla! < 3.3.4 SQL Injection
medium
105389GoAhead Server CGI Remote Code Execution
high
105376Palo Alto Networks PAN-OS Management Interface RCE (PAN-SA-2017-0027)
critical
105374GitHub Enterprise Management Console RCE
critical
105373Citrix NetScaler Multiple Vulnerabilities (CTX230238, CTX230612)
medium
105372WP Symposium Plugin Arbitrary File Upload
critical
105371Atlassian Bamboo 6.1.x < 6.1.6 / 6.2.x < 6.2.5 Incorrect Permission Check RCE
critical
105358BuddyPress Plugin for WordPress < 2.9.2 Information Disclosure
medium
105174RegistrationMagic Plugin for WordPress < 3.7.9.3 PHP Object Injection
high
105163Flickr Gallery Plugin for WordPress < 1.5.3 PHP Object Injection
high
105162Smush Image Plugin for WordPress < 2.7.6 Directory Traversal
high
105159AXIS HTTP GET Heap Overflow
critical
105156OTRS Authenticated Remote Code Execution (OSA-2017-07)
high
105155OTRS Unspecified Remote Code Execution (OSA-2017-04)
high
105108WP Smart Security Plugin for WordPress PHP Object Injection
high
105025Appointments Plugin for WordPress < 2.2.2 PHP Object Injection
high
105024Ultimate Product Catalog Plugin for WordPress < 4.2.26 PHP Object Injection
high
105023Ultimate Form Builder Lite for WordPress < 1.3.7 SQL Injection
critical
105022Slimstat Analytics Plugin for WordPress < 4.7.1 PHP Object Injection
high
105004WordPress < 4.9.1 Multiple Vulnerabilities
high
104900Brother Printer Debut embedded httpd <= 1.20 DoS
high
104897EMC RSA Authentication Manager < 8.2 SP1 Patch 6 Stored Cross-Site Scripting (ESA-2017-152)
medium
104888Veritas NetBackup Appliance < 2.7.2 / 3.1.0 Multiple Vulnerabilities (VTS17-003)
critical
104850Splunk Enterprise 6.3.x < 6.3.12 / 6.4.x < 6.4.9 / 6.5.x < 6.5.6 / 6.6 < 6.6.3.2 or 6.6.4 / 7.0.x < 7.0.0.1 Multiple SAML Implementation Vulnerabilities
critical
104659Vanilla Forums Header Injection Remote Code Execution
high
104655Zabbix 3.0.x < 3.0.13 / 3.2.x < 3.2.10 / 3.4.x < 3.4.4 Multiple Vulnerabilities
high
104634Jenkins < 2.73.3 / 2.89 Multiple Vulnerabilities
high
104633PHP 7.1.x < 7.1.11 Multiple Vulnerabilities
critical
104632PHP 7.0.x < 7.0.25 Multiple Vulnerabilities
critical
104631PHP 5.6.x < 5.6.32 Multiple Vulnerabilities
critical
104572Adobe Connect <= 9.6.2 Multiple Vulnerabilities (APSB17-35)
critical
104571ONVIF Snapshot Username and Password Leak
medium
104478Joomla! 1.5.0 < 3.8.2 Multiple Vulnerabilities
critical
104391EMC VMAX VASA Provider Virtual Appliance < 8.4.0.512 Authentication Bypass Vulnerability
critical
104390EMC Unisphere for VMAX Virtual Appliance < 8.4.0.15 Authentication Bypass Vulnerability
critical
104389EMC Solutions Enabler Virtual Appliance < 8.4.0.15 Authentication Bypass Vulnerability
critical
104380EMC RSA Authentication Manager < 8.2 SP1 Patch 5 Reflected Cross-Site Scripting (ESA-2017-134)
medium
104356WordPress < 4.8.3 Multiple Vulnerabilities
critical
104353Apache Solr 5.x < 5.5.5 / 6.x < 6.6.2 / 7.x < 7.1.0 Multiple Vulnerabilities
critical
104276ONVIF Username and Password leak
medium
104144MVPower DVR Remote Command Execution
critical
104129Linksys E1500/E2500 Authenticated Command Execution
critical
104128NETGEAR DGN Remote Unauthenticated Command Execution
critical
104126D-Link DIR-300L/600L Remote Command Execution
critical
104124Vocran NVR Remote Command Execution
critical
104104IBM OpenAdmin Tool welcomeService.php Remote Code Execution
critical