Web Servers Family for Nessus

IDNameSeverity
125595IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.9 TLS Downgrade Vulnerability (CVE-2018-1719)
medium
125265Oracle WebLogic Server Java Object Deserialization RCE (CVE-2018-3245)
critical
124566IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.15 Form Login Spoofing Vulnerability (CVE-2018-1695)
medium
124565IBM BigFix Platform 9.5.x < 9.5.12 Multiple Vulnerabilities
critical
124564IBM BigFix Platform 9.2.x <= 9.2.16 / 9.5.x <= 9.5.11 Information Disclosure
medium
124563IBM BigFix Platform 9.5.x < 9.5.10 Plain Text Credentials
high
124338Oracle WebLogic WLS9-async Remote Code Execution (remote check)
critical
124336NGINX Unit HTTP Server Detection
info
124335NGINX Unit 0.x > 0.3 / 1.x < 1.7.1 Heap Buffer Overflow (CVE-2019-7401)
critical
124240GPON ONT Home Gateway Remote Enabling of Telnet (CVE-2019-3917)
high
124156Oracle Fusion Middleware Oracle HTTP Server (Apr 2019 CPU)
critical
124090Oracle Fusion Middleware Oracle HTTP Server Multiple Vulnerabilities (October 2018 CPU)
critical
124064Apache Tomcat 7.0.0 < 7.0.94 multiple vulnerabilities
high
124063Apache Tomcat 8.5.0 < 8.5.40 multiple vulnerabilities
high
124058Apache Tomcat 9.0.0.M1 < 9.0.18
high
124025IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.16 / 9.0.0.x < 9.0.0.11 Admin Console Denial of Service (DoS) Vulnerability (CVE-2019-4080)
medium
124024IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.16 / 9.0.0.x < 9.0.0.11 / Liberty < 19.0.0.4 Request Header Denial of Service (DoS) Vulnerability (CVE-2019-4046)
high
124023IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.16 / 9.0.0.x < 9.0.0.11 Information Disclosure Vulnerability (CVE-2018-1996)
medium
123642Apache 2.4.x < 2.4.39 Multiple Vulnerabilities
high
123419GPON ONT Home Gateway Authenticated Remote Command Execution (CVE-2019-3920)
high
123013GPON ONT Home Gateway Authenticated Remote Command Execution (CVE-2019-3919)
high
122612nginx <= 1.3.13 Insecure Log Permissions
high
122504OpenSSL 1.0.2 < 1.0.2r Vulnerability
medium
122447Apache Tomcat 9.0.0.M1 < 9.0.8
high
124462Oracle WebLogic Server 10.3.6.0 / 12.1.3.0 / 12.2.1.3 Java Object Deserialization RCE (CVE-2018-3191)
critical
122403Operating System Unsupported Version Detection in banner reporting (PCI-DSS check)
critical
122157Unsupported linux kernel version detected in banner reporting (PCI-DSS check)
critical
122060Apache 2.4.x < 2.4.33 Multiple Vulnerabilities
critical
122059Apache 2.4.17 / 2.4.18 DoS
medium
121421Oracle Fusion Middleware Oracle HTTP Server Multiple Vulnerabilities (January 2019 CPU)
high
121385OpenSSL 1.1.1 < 1.1.1a Multiple Vulnerabilities
medium
121384OpenSSL 1.1.0 < 1.1.0j Multiple Vulnerabilities
medium
121383OpenSSL 1.0.2 < 1.0.2q Multiple Vulnerabilities
medium
121355Apache 2.4.x < 2.4.38 Multiple Vulnerabilities
high
121348WAS Target Discovery for PCI
info
121125Apache Tomcat < 9.0.0.M3 Multiple Vulnerabilities
high
121124Apache Tomcat 8.0.0.RC1 < 8.0.52
high
121123Apache Tomcat 8.0.0.RC1 < 8.0.30
medium
121122Apache Tomcat < 8.0.0-RC10 Multiple Vulnerabilities
low
121121Apache Tomcat 7.0.28 < 7.0.88
high
121120Apache Tomcat 7.0.0 < 7.0.76
critical
121119Apache Tomcat 7.0.0 < 7.0.70
high
121118Apache Tomcat 7.0.5 < 7.0.67
high
121117Apache Tomcat 7.0.0 < 7.0.65
medium
121116Apache Tomcat 7.0.0 < 7.0.47 multiple vulnerabilities
medium
121115Apache Tomcat 7.0.0 < 7.0.2
medium
121114Apache Tomcat < 6.0.6 Cross-Site Scripting
medium
121113Apache Tomcat < 6.0.14 Multiple Vulnerabilities
medium
121112Apache Tomcat < 6.0.10 Directory Traversal
medium
109394WAS Target Scanning for PCI
info