CGI abuses Family for Nessus

IDNameSeverity
101396DNN (DotNetNuke) 3.0.0 < 9.1.0 SWF File Handling XSS
medium
101395Adobe Connect <= 9.6.1 Multiple Vulnerabilities (APSB17-22)
high
101355Belkin N750 Router Command Injection
critical
101305EMC RSA Archer WebUI Detection
info
101304EMC RSA Archer < 6.2.0.2 Multiple Vulnerabilities
high
101303WP Statistics Plugin for WordPress 'functions.php' wp_statistics_searchengine_query() SQLi
high
101302WP Statistics Plugin for WordPress < 12.0.8 'functions.php' wp_statistics_searchengine_query() SQLi
high
101299HP SiteScope Multiple Vulnerabilities (HPESBGN03763)
high
101300Joomla! 1.7.3 < 3.7.3 Multiple Vulnerabilities
high
101158Symantec Messaging Gateway 10.x < 10.6.3-266 Multiple Vulnerabilities (SYM17-004)
critical
101111HooToo HT-TM06 TripMate Elite Web Server 'protocol.csp' HTTP Cookie Header Handling RCE
medium
101090Check_MK Server WebUI Detection
info
101088Check_MK Agent for Linux 1.2.3i < 1.2.5i3 Arbitrary File Disclosure
medium
101087Check_MK 1.2.4 < 1.2.4p4 / 1.2.5 < 1.2.5i4 Multiple Vulnerabilities
high
101086Check_MK 1.2.2 < 1.2.2p3 / 1.2.3 < 1.2.3i5 Multiple Vulnerabilities
medium
101063Drupal 7.x < 7.56 / 8.x < 8.3.4 Multiple Vulnerabilities (SA-CORE-2017-003)
critical
101026Atlassian Bamboo 5.x < 5.15.7 / 6.0.x < 6.0.1 Incorrect Permission Check RCE
high
101025Elasticsearch Unrestricted Access Information Disclosure
medium
100934DNN (DotNetNuke) < 7.4.1 Administration Authentication Bypass Vulnerability
critical
100846Sophos Web Appliance < 4.3.1 Multiple Remote Command Injection Vulnerabilities
high
100844Splunk Enterprise < 5.0.19 / 6.0.15 / 6.1.14 / 6.2.14 / 6.3.11 Error Message Spoofing
medium
100842Adobe Captivate Quiz Reporting Feature 'internalserverread.php' Remote File Disclosure (APSB17-19)
high
100841Adobe Captivate Quiz Reporting Feature 'internalServerReporting.php' File Upload RCE
high
100805PHP 7.1.x < 7.1.6 Multiple Vulnerabilities
critical
100804PHP 7.0.x < 7.0.20 Multiple Vulnerabilities
critical
100789Serendipity < 2.1.1 Multiple Vulnerabilities
critical
100615Zabbix 2.0.x < 2.0.21 / 2.2.x < 2.2.18 / 3.0.x < 3.0.9 / 3.2.x < 3.2.5 Multiple Vulnerabilities
high
100597Alt-N MDaemon Remote Administration Detection
info
100596Alt-N MDaemon WebAdmin Unsupported Version Detection
critical
100595Alt-N MDaemon Remote Administration 13.0.x < 13.0.8 RCE (MD041917) (EASYBEE)
critical
100594Fortinet FortiAnalyzer / FortiManager 5.4.x < 5.4.3 Open Redirect (FG-IR-17-014)
medium
100421PHP 7.1.x < 7.1.5 Multiple Vulnerabilities
critical
100420PHP 7.0.x < 7.0.19 Multiple Vulnerabilities
critical
100387Cobalt RaQ4 Administrative Interface backup.cgi Command Execution (EXTINCTSPINACH)
critical
100385Joomla! 3.7.x < 3.7.1 fields.php getListQuery() Method SQLi
critical
101301Veritas NetBackup Appliance 2.7.x / 3.0.x Remote Command Execution (VTS17-005) (exploit)
critical
100321NETGEAR Multiple Model PHP Remote Command Injection
critical
100298WordPress < 4.7.5 Multiple Vulnerabilities
high
100297Pivotal RabbitMQ Management Plugin Detection
info
100296Pivotal RabbitMQ Management Plugin 3.4.x / 3.5.x / 3.6.x < 3.6.9 Multiple Vulnerabilities
medium
100273Veritas NetBackup Appliance 2.7.x / 3.0.x Remote Command Execution (VTS17-005)
critical
100222IBM WebSphere Portal Cross-Site Redirection
high
100220Atlassian JIRA 4.2.4 < 6.3.0 Multiple Vulnerabilities
critical
100159HP Network Automation 9.x, 10.x < 10.00.022 / 10.1x.x < 10.11.03 / 10.20.x < 10.21.01 Multiple Vulnerabilities
critical
100028WordPress 2.3.0 - 4.8.3 Unauthorized Password Reset
medium
99986Atlassian Confluence 6.0.x < 6.0.7 Drafts diff REST Information Disclosure
high
99984Jenkins < 2.46.2 / 2.57 and Jenkins Enterprise < 1.625.24.1 / 1.651.24.1 / 2.7.24.0.1 / 2.46.2.1 Multiple Vulnerabilities
critical
99983Kaa IoT Administration Server Detection
info
99933Bitrix Product and Modules Detection
info
99932Bitrix bitrix.xscan Module < 1.0.4 bitrix.xscan_worker.php 'file' Parameter Path Traversal File Disclosure
medium