CGI abuses Family for Nessus

IDNameSeverity
39617HP DDMI on Windows Unspecified Remote Agent Access
high
39616HP DDMI Web Interface Default Credentials
high
39537Movable Type Detection
info
39536BASE < 1.2.5 readRoleCookie() Auth Bypass
high
39535Basic Analysis and Security Engine Authentication Check
medium
39501Zen Cart password_forgotten.php Admin Access Bypass
high
39500Zen Cart Detection
info
39482Acajoom Component for Joomla! <= 3.2.6 Backdoor Detection
high
39480PHP < 5.2.10 Multiple Vulnerabilities
medium
39470CGI Generic Tests Timeout
info
39469CGI Generic Remote File Inclusion
high
39468CGI Generic Header Injection
medium
39467CGI Generic Path Traversal
medium
39465CGI Generic Command Execution
high
39447Apache Tomcat RequestDispatcher Directory Traversal Arbitrary File Access
medium
39365Drupal SA-CONTRIB-2009-036: Services Module Key-Based Access Bypass
medium
39314Sun Java System Directory Server Online Help Feature Information Disclosure
medium
38974JVideo! Component for Joomla! 'user_id' Parameter SQLi
high
38952CrashPlan Server Default Administrative Credentials
high
38926DokuWiki config_cascade Parameter Remote File Inclusion
medium
38925WP-Lytebox 'pg' Parameter Local File Inclusion
medium
38890VICIDIAL Call Center Suite Default Administrative Credentials
high
38889VICIDIAL Call Center Suite admin.php SQL Injection
medium
38888TinyWebGallery lang Parameter Local File Inclusion
high
38879Coppermine Photo Gallery GLOBALS[USER[lang] Parameter Local File Inclusion
medium
38832HP System Management Homepage < 3.0.1.73 Multiple Flaws
medium
38828Flyspeck lang Parameter Local File Inclusion
medium
38794SquirrelMail map_yp_alias Username Mapping Alias Arbitrary Code Execution
high
38762Open Virtual Desktop Detection
info
38717IceWarp Merak WebMail Server < 9.4.2 Multiple Vulnerabilities
medium
38701Oracle GlassFish Server Administration Console Default Credentials
high
38695Sun Java System Identity Manager ext Parameter Arbitrary File Retrieval
high
38694LimeSurvey sUser Parameter SQL Injection
high
38688Openfire < 3.6.4 jabber:iq:auth Crafted password_change Request Password Manipulation
medium
38665OpenCart route Parameter Local File Inclusion
medium
38653Symantec Reporting Server Improper URL Handling Exposure
medium
38648Atmail Webmail / AtmailOpen Webmail Detection
info
38198Sun Java System Identity Manager Account Disclosure
medium
38183ClearSpace Detection
info
38156FogBugz Interface Detection
info
38155Fortify 360 Web Interface Detection
info
38152Linksys WVC54GCA Wireless-G '/img/main.cgi' Information Disclosure
medium
36205Novell Teaming Login User Account Enumeration Weakness
medium
36171phpMyAdmin Setup Script Configuration Parameters Arbitrary PHP Code Injection (PMASA-2009-4)
high
36170phpMyAdmin setup.php save Action Arbitrary PHP Code Injection (PMASA-2009-3)
high
36144Geeklog SEC_authenticate Function SQL Injection
high
36143Geeklog Detection
info
36129HP LaserJet Web Server Unspecified Admin Component Traversal Arbitrary File Access
high
36102Jinzora name Parameter Local File Inclusion
medium
36083phpMyAdmin file_path Parameter Vulnerabilities (PMASA-2009-1)
medium