CGI abuses Family for Nessus

IDNameSeverity
64244WebYaST Host Modification MiTM
medium
64243Floating Social Media Links Plugin for WordPress 'wpp' Parameter Remote File Inclusion
high
64096Movable Type mt-upgrade.cgi Remote Command Execution
high
63693ManageEngine AssetExplorer Default Administrator Credentials
high
63692ManageEngine AssetExplorer Detection
info
63691Drupal 6.x < 6.28 / 7.x < 7.19 Multiple Vulnerabilities
medium
63688NetIQ Privileged User Manager regclnt.dll Directory Traversal
medium
63687Google Doc Embedder Plugin for WordPress 'File' Parameter Traversal Arbitrary File Disclosure
medium
63638MoinMoin twikidraw.py Traversal File Upload Arbitrary File Overwrite
high
63622PHP 5.4.x < 5.4.11 cURL X.509 Certificate Domain Name Matching MiTM Weakness
medium
63621PHP 5.3.x < 5.3.21 cURL X.509 Certificate Domain Name Matching MiTM Weakness
medium
63563Nagios Core history.cgi Multiple Parameter Buffer Overflow
high
63562Nagios Core Detection
info
63477Prado Framework sr Parameter Directory Traversal
medium
63399TWiki < 5.1.3 Multiple Vulnerabilities
high
63334Snare Agent for Linux < 1.7.0 / 2.0.0 Multiple Vulnerabilities
medium
63333Snare Agent Detection
info
63326Advanced Custom Fields Plugin for WordPress 'acf_abspath' Parameter Remote File Inclusion
high
63324Drupal 6.x < 6.27 / 7.x < 7.18 Multiple Vulnerabilities
medium
63304IceWarp Webmail raw.php Information Disclosure
medium
63267MediaWiki < 1.18.6 / 1.19.3 / 1.20.1 Multiple Vulnerabilities
medium
63245Ektron CMS XslCompiledTransform Class Request Parsing Remote Code Execution
critical
63206ManageEngine Security Manager Plus 'f' Directory Traversal Arbitrary File Access
medium
63205ManageEngine Security Manager Plus Default Administrator Credentials
high
63204ManageEngine Security Manager Plus Detection
info
63201RWCards Component for Joomla! 'mosConfig_absolute_path' Parameter Remote File Include
critical
63186NetIQ Privileged User Manager Password Change Authentication Bypass (version check)
medium
63185NetIQ Privileged User Manager ldapagnt_eval() Function Remote Code Execution (version check)
critical
63158ManageEngine Applications Manager Default Administrator Credentials
high
63157ManageEngine Applications Manager Detection
info
63111Narcissus backend.php release Parameter Remote Command Execution
high
63097IBM WebSphere Portal Dojo Module Arbitrary File Download
medium
63079Piwik core/Loader.php Trojaned Distribution
high
63078Piwik Detection
info
63066Symantec Messaging Gateway 9.5.x Multiple Vulnerabilities (SYM12-018)
medium
63065Request Tracker 3.x < 3.8.15 / 4.x < 4.0.8 Multiple Vulnerabilities
medium
62992NetIQ Privileged User Manager ldapagnt_eval() Function Remote Code Execution (intrusive check)
critical
62991NetIQ Privileged User Manager Password Change Authentication Bypass (intrusive check)
medium
62990NetIQ Privileged User Manager Default Admin Password
critical
62989NetIQ Privileged User Manager Detection
info
62973Bugzilla < 3.6.12 / 4.0.9 / 4.2.4 / 4.4rc1 Multiple Vulnerabilities
medium
62968Novell Sentinel Log Manager Authentication Bypass
medium
62967Novell Sentinel Log Manager Web Detection
info
62966WebYaST Web Client Detection
info
62941CoSoSys Endpoint Protector Detection
info
62939Freestyle Testimonials Component for Joomla! Unspecified SQLi
high
62938Freestyle Support Portal Component for Joomla! 'prodid' Parameter SQLi
high
62926Liferay Portal 6.1.0 / 6.1.10 Arbitrary File Deletion
medium
62893SolarWinds Orion NPM < 9.5 Login.asp SQLi
high
62892Traq admincp/common.php authenticate() Function Authentication Bypass Remote Code Execution
high