CGI abuses Family for Nessus

IDNameSeverity
72347Synology DiskStation Manager uistrings.cgi lang Parameter Directory Traversal
medium
72346Synology DiskStation Manager < 4.3-3810 Update 3 Multiple FileBrowser Component Directory Traversal Vulnerabilities
high
72345Synology DiskStation Manager 4.3-x < 4.3-3810 Update 1 Multiple Vulnerabilities
critical
72343Synology DiskStation Manager < 4.3-3776 Update 2 Multiple Vulnerabilities
high
72342Synology DiskStation Manager 4.0-x < 4.0-2259 / 4.1-x / 4.2-x < 4.2-3243 SLICEUPLOAD Function Remote Code Execution
critical
72341Synology DiskStation Manager (DSM) Detection
info
72258SAP Host Agent SOAP Web Service Information Disclosure (SAP Note 1816536)
medium
72257ManageEngine SupportCenter Plus < 7.9 Build 7917 attach Parameter Directory Traversal
high
72215MediaWiki < 1.19.11 / 1.21.5 / 1.22.2 Multiple Remote Code Execution Vulnerabilities
medium
72152Landing Pages Plugin for WordPress 'wp-admin/edit.php' 'post' Parameter SQL Injection
high
72151Puppet Symlink File Overwrite
low
72103Drupal 7.x < 7.26 Multiple Vulnerabilities
high
72102Drupal 6.x < 6.30 OpenID Module Account Hijacking
high
72094MapServer < 5.6.9 / 6.0.4 / 6.2.2 / 6.4.1 SQL Injection
medium
72091Adobe ColdFusion Unsupported Version Detection
critical
72090ColdFusion Extended Support Version Detection
info
71928PHP 5.5.x < 5.5.8 Multiple Vulnerabilities
medium
71927PHP 5.4.x < 5.4.24 Multiple Vulnerabilities
medium
71883UltraVNC Java Viewer Detection
info
71882TightVNC Java Viewer Detection
info
71881TigerVNC Java Viewer Detection
info
71880RealVNC Java Viewer Detection
info
71846Apache Solr < 4.6.0 'SolrResourceLoader' Directory Traversal
medium
71845Apache Solr < 4.3.1 XML External Entity Injection
medium
71844Apache Solr < 4.1.0 Multiple XML External Entity Injections
high
71840Cisco WAAS Mobile Server Web Administration Default Credentials
high
71839Cisco WAAS Mobile Server Web Administration Interface Detection
info
71636Nagios XI < 2012R2.4 tfPassword Parameter SQL Injection
high
71635NagiosQL Detection
info
71535Zabbix 1.9.x < 1.9.4 zabbix_agentd DoS
medium
71525OpenMediaVault Default Administrator Credentials
high
71524OpenMediaVault Web Detection
info
71522LiveZilla < 5.1.2.1 Multiple Vulnerabilities
high
71500MediaWiki < 1.19.9 / 1.20.8 / 1.21.3 Multiple Vulnerabilities
medium
71494iLO 3 < 1.65 / iLO 4 < 1.32 Multiple Vulnerabilities
medium
71441LiveZilla < 5.1.1.0 Multiple Vulnerabilities
medium
71440LiveZilla 'mobile/php/translation/index.php' 'g_language' Parameter Local File Inclusion
high
71439LiveZilla Detection
info
71428PHP 5.5.x < 5.5.7 OpenSSL openssl_x509_parse() Memory Corruption
high
71427PHP 5.4.x < 5.4.23 OpenSSL openssl_x509_parse() Memory Corruption
high
71426PHP 5.3.x < 5.3.28 Multiple OpenSSL Vulnerabilities
high
71219ManageEngine Desktop Central Default Administrator Credentials
high
71218ManageEngine Desktop Central AgentLogUploadServlet Arbitrary File Upload
critical
71217ManageEngine Desktop Central AgentLogUploadServlet Arbitrary File Upload RCE (intrusive check)
critical
71216ManageEngine Endpoint Central Detection
info
71215Jenkins Accessible without Credentials
high
71213Atlassian Confluence < 4.3.7 Multiple Vulnerabilities
medium
71212Monitorix Built-in HTTP Server Remote Command Execution
critical
71177IBM Domino Web Administrator Multiple Vulnerabilities
medium
71159Nagios Looking Glass Addon for Nagios server/s3_download.php File Disclosure
medium