Web Servers Family for Nessus

IDNameSeverity
197828Apache Tomcat 9.0.0.M1 < 9.0.0.M19 multiple vulnerabilities
critical
197827Apache Tomcat 8.5.0 < 8.5.51 multiple vulnerabilities
critical
197826Apache Tomcat 7.0.25 < 7.0.90
high
197825Apache Tomcat 9.0.0.M1 < 9.0.0.M21
high
197824Apache Tomcat 8.0.0 < 8.0.0-RC3 multiple vulnerabilities
medium
197823Apache Tomcat 7.0.0 < 7.0.75
high
197822Apache Tomcat 9.0.0.M1 < 9.0.12
medium
197821Apache Tomcat 8.5.0 < 8.5.3
high
197820Apache Tomcat 7.0.0 < 7.0.77
high
197819Apache Tomcat 8.5.0 < 8.5.58
medium
197818Apache Tomcat 7.0.0 < 7.0.72 multiple vulnerabilities
critical
197817Apache Tomcat 8.5.0 < 8.5.38
high
197740DLink DIR equal to 2.01MT (CVE-2021-40655)
high
197733DLink DIR < 2.17.b02 (SAP10018)
high
197720TeamCity Server < 2024.3.1 Multiple Vulnerabilities
medium
197409SAP NetWeaver AS ABAP XSS (May 2024) (3450286)
medium
197408SAP NetWeaver AS ABAP XSS (May 2024) (3448445)
medium
197407SAP NetWeaver AS ABAP File Upload Vulnerability (May 2024) (3448171)
critical
197189OpenSSL 3.3.0 < 3.3.1 Multiple Vulnerabilities
high
196951F5 BIG-IP Next Central Manager < 20.2.0 SQLi (K000138732) (Direct Check)
critical
195211F5 BIG-IP Next Central Manager < 20.2.0 SQLi (K000138733) (Direct Check)
critical
194915Eclipse Jetty Web Server Detection
info
194473Apache Tomcat 9.0.0.M1 < 9.0.44 multiple vulnerabilities
medium
194472Apache Tomcat 8.5.0 < 8.5.64 multiple vulnerabilities
medium
194432Chef Infra Server Detection
info
193948Progress Kemp Flowmon 11.x < 11.1.14, 12.x < 12.3.5 RCE (CVE-2024-2389)
critical
193917CrushFTP < 10.7.1 / 11.x < 11.1.0 Sandbox Escape (CVE-2024-4040) (Direct Check)
critical
193867IBM WebSphere Application Server 8.5.x < 8.5.5.26 / 9.x < 9.0.5.20 / Liberty 17.0.0.3 < 24.0.0.5 DoS (7149330)
high
193460Oracle HTTP Server (April 2024 CPU)
critical
193424Apache 2.4.x < 2.4.54 Multiple Vulnerabilities (mod_lua)
high
193423Apache 2.4.x < 2.4.54 Multiple Vulnerabilities
high
193422Apache 2.4.x < 2.4.54 HTTP Request Smuggling Vulnerability
high
193421Apache 2.4.x < 2.4.54 Authentication Bypass
critical
193420Apache 2.4.x < 2.4.54 Out-Of-Bounds Read (CVE-2022-28330)
medium
193419Apache 2.4.x < 2.4.58 Out-of-Bounds Read (CVE-2023-31122)
high
193372IBM WebSphere Application Server 8.5.x < 8.5.5.26 / 9.x < 9.0.5.20 / Liberty 17.0.0.3 < 24.0.0.6 (7148426)
high
193371IBM WebSphere Application Server 8.5.x < 8.5.5.26 / 9.x < 9.0.5.20 / Liberty 17.0.0.3 < 24.0.0.4 (7148380)
medium
193212SAP NetWeaver SSRF (April 2024)
medium
193211SAP NetWeaver AS Java Information Disclosure (April 2024)
high
193210SAP NetWeaver AS ABAP DoS (April 2024)
medium
193176Grafana Labs 9.5 < 9.5.18, 10.0 < 10.0.13, 10.1 < 10.1.9, 10.2 < 10.2.6, 10.3 < 10.3.5 (CVE-2024-1313)
medium
193144Security Updates for Azure CycleCloud (April 2024)
high
192974OpenSSL 3.1.0 < 3.1.6 Multiple Vulnerabilities
high
192967OpenSSL 3.2.0 < 3.2.2 Multiple Vulnerabilities
high
192966OpenSSL 3.0.0 < 3.0.14 Multiple Vulnerabilities
high
192965OpenSSL 1.1.1 < 1.1.1y Multiple Vulnerabilities
high
192936IBM WebSphere Application Server 8.5.5.3 < 8.5.5.26 / 9.x < 9.0.5.20 / Liberty 21.0.0.3 < 24.0.0.4 DoS (7145942)
medium
192923Apache 2.4.x < 2.4.59 Multiple Vulnerabilities
high
192915IBM WebSphere Application Server Liberty 18.0.0.2 < 24.0.0.5 DoS (7145809)
high
192754IBM WebSphere Application Server 8.5.x < 8.5.5.26 / 9.x < 9.0.5.20 (7145620)
medium