FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
176528FreeBSD : Kanboard -- Clipboard based cross-site scripting (blocked with default CSP) in Kanboard (79514fcd-feb4-11ed-92b5-b42e991fc52e)
medium
176524FreeBSD : OpenSSL -- Possible DoS translating ASN.1 identifiers (eb9a3c57-ff9e-11ed-a0d1-84a93843eb75)
medium
176442FreeBSD : MariaDB -- Nullpointer dereference (5d1b1a0a-fd36-11ed-a0d1-84a93843eb75)
medium
176219FreeBSD : phpmyfaq -- multiple vulnerabilities (7d6be8d4-f812-11ed-a7ff-589cfc0f81b0)
high
176134FreeBSD : curl -- multiple vulnerabilities (a4f8bb03-f52f-11ed-9859-080027083a05)
high
176133FreeBSD : zeek -- potential DoS vulnerabilities (1ab7357f-a3c2-406a-89fb-fd00e49a71b5)
high
176062FreeBSD : electron -- vulnerability (b09d77d0-b27c-48ae-b69b-9641bb68b39e)
medium
175962FreeBSD : chromium -- multiple vulnerabilities (bea52545-f4a7-11ed-8290-a8a1599412c6)
high
175824FreeBSD : postgresql-server -- CREATE SCHEMA ... schema elements defeats protective search_path changes (fbb5a260-f00f-11ed-bbae-6cc21735f730)
high
175823FreeBSD : postgresql-server -- Row security policies disregard user ID changes after inlining (4b636f50-f011-11ed-bbae-6cc21735f730)
medium
175762FreeBSD : piwigo -- SQL injection (ec63bc8e-f092-11ed-85ca-001517a2e1a4)
high
175761FreeBSD : Gitlab -- Vulnerability (4a08a4fb-f152-11ed-9c88-001b217b3468)
medium
175760FreeBSD : vscode -- Visual Studio Code Information Disclosure Vulnerability (7913fe6d-2c6e-40ba-a7d7-35696f3db2b6)
medium
175277FreeBSD : redis -- HINCRBYFLOAT can be used to crash a redis-server process (96b2d4db-ddd2-11ed-b6ea-080027f5fec9)
medium
175156FreeBSD : Gitlab -- Multiple Vulnerabilities (89fdbd85-ebd2-11ed-9c88-001b217b3468)
medium
175126FreeBSD : Django -- multiple vulnerabilities (d55e1b4d-eadc-11ed-9cc0-080027de9982)
critical
175040FreeBSD : chromium -- multiple vulnerabilities (246174d3-e979-11ed-8290-a8a1599412c6)
high
175004FreeBSD : Gitlab -- Multiple Vulnerabilities (4ffcccae-e924-11ed-9c88-001b217b3468)
high
174972FreeBSD : cloud-init -- sensitive data exposure in cloud-init logs (02562a78-e6b7-11ed-b0ce-b42e991fc52e)
medium
174957FreeBSD : h2o -- Malformed HTTP/1.1 causes Out-of-Memory Denial of Service (4da51989-5a8b-4eb9-b442-46d94ec0802d)
high
174897FreeBSD : Grafana -- Exposure of sensitive information to an unauthorized actor (5e257b0d-e466-11ed-834b-6c3be5272acd)
high
174896FreeBSD : Grafana -- Critical vulnerability in golang (0b85b1cd-e468-11ed-834b-6c3be5272acd)
critical
174793FreeBSD : git -- Multiple vulnerabilities (d2c6173f-e43b-11ed-a1d7-002590f2a714)
high
174766FreeBSD : element-web -- matrix-react-sdk vulnerable to HTML injection in search results via plaintext message highlighting (c676bb1b-e3f8-11ed-b37b-901b0e9408dc)
medium
174724FreeBSD : jellyfin -- Multiple vulnerabilities (4ee322e9-e363-11ed-b934-b42e991fc52e)
high
174664FreeBSD : MySQL -- Multiple vulnerabilities (f504a8d2-e105-11ed-85f6-84a93843eb75)
critical
174641FreeBSD : phpmyfaq -- multiple vulnerabilities (bb528d7c-e2c6-11ed-a3e6-589cfc0f81b0)
high
174572FreeBSD : chromium -- multiple vulnerabilities (90c48c04-d549-4fc0-a503-4775e32d438e)
critical
174396FreeBSD : libxml2 -- multiple vulnerabilities (0bd7f07b-dc22-11ed-bf28-589cfc0f81b0)
medium
174391FreeBSD : mod_gnutls -- Infinite Loop on request read timeout (e8b20517-dbb6-11ed-bf28-589cfc0f81b0)
high
174390FreeBSD : chromium -- multiple vulnerabilities (6f0327d4-9902-4042-9b68-6fc2266944bc)
high
174334FreeBSD : py-cinder -- data leak (f4a94232-7864-4afb-bbf9-ff2dc8e288d1)
medium
174323FreeBSD : py39-cinder -- insecure-credentials flaw (f767d615-01db-47e9-b4ab-07bb8d3409fd)
medium
174322FreeBSD : py39-sqlalchemy12 -- multiple SQL Injection vulnerabilities (d2293e22-4390-42c2-a323-34cca2066000)
critical
174320FreeBSD : py-tensorflow -- denial of service vulnerability (ae132c6c-d716-11ed-956f-7054d21a9e2a)
high
174319FreeBSD : py-beaker -- arbitrary code execution vulnerability (b54abe9d-7024-4d10-98b2-180cf1717766)
medium
174318FreeBSD : py39-unicorn -- sandbox escape and arbitrary code execution vulnerability (17083017-d993-43eb-8aaf-7138f4486d1c)
high
174317FreeBSD : py-ansible -- multiple vulnerabilities (e1b77733-a982-442e-8796-a200571bfcf2)
high
174316FreeBSD : py-cryptography -- includes a vulnerable copy of OpenSSL (c1a8ed1c-2814-4260-82aa-9e37c83aac93)
high
174315FreeBSD : py-cryptography -- allows programmers to misuse an API (a32ef450-9781-414b-a944-39f2f61677f2)
medium
174314FreeBSD : py39-sentry-sdk -- sensitive cookies leak (15dae5cc-9ee6-4577-a93e-2ab57780e707)
medium
174313FreeBSD : py-kerberos -- DoS and MitM vulnerabilities (2acdf364-9f8d-4aaf-8d1b-867fdfd771c6)
high
174312FreeBSD : zeek -- potential DoS vulnerabilities (96d6809a-81df-46d4-87ed-2f78c79f06b1)
high
174311FreeBSD : py27-setuptools44 -- denial of service vulnerability (187ab98e-2953-4495-b379-4060bd4b75ee)
medium
174310FreeBSD : py-slixmpp -- incomplete SSL certificate validation (93db4f92-9997-4f4f-8614-3963d9e2b0ec)
high
174309FreeBSD : py39-configobj -- vulnerable to Regular Expression Denial of Service (de970aef-d60e-466b-8e30-1ae945a047f1)
medium
174308FreeBSD : py-suds -- vulnerable to symlink attacks (b31f7029-817c-4c1f-b7d3-252de5283393)
high
174307FreeBSD : py39-pycares -- domain hijacking vulnerability (43e9ffd4-d6e0-11ed-956f-7054d21a9e2a)
medium
174306FreeBSD : py39-py -- Regular expression Denial of Service vulnerability (28a37df6-ba1a-4eed-bb64-623fc8e8dfd0)
high
174305FreeBSD : py39-OWSLib -- arbitrary file read vulnerability (e5d117b3-2153-4129-81ed-42b0221afa78)
high