Windows Family for Nessus

IDNameSeverity
99126Mozilla Firefox ESR < 52.0.1 CreateImageBitmap RCE
critical
99125Mozilla Firefox < 52.0.1 CreateImageBitmap RCE
critical
99105VMware Workstation 12.x < 12.5.5 Multiple Vulnerabilities (VMSA-2017-0006)
high
97990VMware Player 12.x < 12.5.4 Drag-and-Drop Feature Guest-to-Host Code Execution (VMSA-2017-0005)
critical
97947Pidgin < 2.12.0 libpurple/util.c purple_markup_unescape_entity() XML Entity Handling RCE
critical
97941VMware Workstation 12.x < 12.5.4 Drag-and-Drop Feature Guest-to-Host Code Execution (VMSA-2017-0005)
critical
97892ImageMagick 6.x < 6.9.7-8 / 7.x < 7.0.4-8 Multiple DoS
high
97891ImageMagick 6.x < 6.9.7-5 / 7.x < 7.0.4-5 tga.c WriteTGAImage() Assertion Failure DoS
medium
97890ImageMagick 6.x < 6.9.7-9 / 7.x < 7.0.4-10 webp.c ReadWEBPImage() File Descriptor Exhaustion DoS
medium
97889HP Performance Center < 12.53 Patch 4 libxdrutil.dll mxdr_string() RCE
critical
97888HPE LoadRunner < 12.53 Patch 4 libxdrutil.dll mxdr_string() RCE
critical
97860HPE Smart Storage Administrator Installed
info
97859HPE Smart Storage Administrator < 2.60.18.0 RCE
high
97835Adobe Shockwave Player <= 12.2.7.197 DLL Hijacking (APSB17-08)
high
97834VMware Workstation 12.x < 12.5.3 Multiple Vulnerabilities (VMSA-2017-0003)
high
97833MS17-010: Security Update for Microsoft Windows SMB Server (4013389) (ETERNALBLUE) (ETERNALCHAMPION) (ETERNALROMANCE) (ETERNALSYNERGY) (WannaCry) (EternalRocks) (Petya) (uncredentialed check)
high
97727Adobe Flash Player <= 24.0.0.221 Multiple Vulnerabilities (APSB17-07)
critical
97724Google Chrome < 57.0.2987.98 Multiple Vulnerabilities
high
97663Mozilla Thunderbird < 45.8 Multiple Vulnerabilities
critical
97661Symantec Endpoint Protection Client 12.1.x < 12.1 RU6 MP7 Local Privilege Escalation (SYM17-002)
high
97639Mozilla Firefox < 52.0 Multiple Vulnerabilities
critical
97638Mozilla Firefox ESR < 45.8 Multiple Vulnerabilities
critical
97579IBM Integration Bus Installed
info
97578IBM Integration Bus 8.x < 8.0.0.8 / 9.x < 9.0.0.6 / 10.x < 10.0.0.5 SOAP FLOWS XXE DoS
critical
97577IBM Integration Bus 8.x < 8.0.0.8 / 9.x < 9.0.0.7 / 10.x < 10.0.0.7 Clickjacking
medium
97574Wireshark 2.0.x < 2.0.11 / 2.2.x < 2.2.5 Multiple DoS
high
97552HPE LoadRunner < 12.50 mchan.dll Packet Handling Invalid Memory Access DoS
high
96663IBM WebSphere MQ 7.0.1.x / 7.1.0.x < 7.1.0.9 / 7.5.0.x < 7.5.0.8 / 8.0.0.x < 8.0.0.6 / 9.0.0.x < 9.0.0.1 Multiple Vulnerabilities
critical
97496LibreOffice < 5.1.6 / 5.2.5 / 5.3.0 Multiple Vulnerabilities
critical
97386NVIDIA Windows GPU Display Driver 375.x < 376.67 / 378.x < 378.52 Multiple Vulnerabilities
high
97352McAfee ePolicy Orchestrator 5.1.x < 5.1.3 HF1167014 / 5.3.x < 5.3.1 HF1179709 / 5.3.x < 5.3.2 HF1167013 Blind SQL Injection (SB10187)
critical
97226Cisco AnyConnect Secure Mobility Client 4.0.x < 4.3.05017 / 4.4.x < 4.4.00243 SBL Module Privilege Escalation
high
97214Adobe Digital Editions < 4.5.4 Multiple Vulnerabilities (APSB17-05)
critical
97142Adobe Flash Player <= 24.0.0.194 Multiple Vulnerabilities (APSB17-04)
critical
97140Ipswitch WhatsUp Gold < 16.5.0 WrFreeFormText.asp sUniqueID Parameter Blind SQLi (credentialed)
high
97086Server Message Block (SMB) Protocol Version 1 Enabled
info
97085Microsoft Office Unsupported Channel Version Detection
critical
96908Cisco WebEx for Internet Explorer RCE (cisco-sa-20170124-webex)
high
96907Cisco WebEx for Firefox RCE (cisco-sa-20170124-webex)
high
96905Mozilla Thunderbird < 45.7 Multiple Vulnerabilities
critical
96830Apple iTunes < 12.5.5 Multiple Vulnerabilities (credentialed check)
high
96828Google Chrome < 56.0.2924.76 Multiple Vulnerabilities
medium
96776Mozilla Firefox < 51.0 Multiple Vulnerabilities
critical
96775Mozilla Firefox ESR < 45.7 Multiple Vulnerabilities
critical
96772Cisco WebEx Extension for Chrome RCE (cisco-sa-20170124-webex)
high
96765Wireshark 2.0.x < 2.0.10 / 2.2.x < 2.2.4 Multiple DoS
high
96721HP Version Control Repository Manager < 7.6.0 Multiple Vulnerabilities
high
96630Citrix Provisioning Services 7.x < 7.12 Multiple Vulnerabilities (CTX219580)
critical
96628Oracle Java SE Multiple Vulnerabilities (January 2017 CPU) (SWEET32)
critical
96627Oracle JRockit R28.3.12 Multiple Vulnerabilities (January 2017 CPU)
critical