Plugins

As information about new vulnerabilities is discovered and released into the general public domain, Tenable Research designs programs to detect them. These programs are named plugins and are written in the Nessus Attack Scripting Language (NASL). The plugins contain vulnerability information, a simplified set of remediation actions and the algorithm to test for the presence of the security issue. Tenable Research has published 336025 plugins, covering 123457 CVE IDs and 30933 Bugtraq IDs.

Search

Newest

IDNameProductFamilySeverity
505449Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23231)Tenable OT SecurityTenable.ot
high
505448Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40214)Tenable OT SecurityTenable.ot
high
505447Siemens RUGGEDCOM RST2428P Integer Overflow or Wraparound (CVE-2026-25210)Tenable OT SecurityTenable.ot
medium
505446Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23112)Tenable OT SecurityTenable.ot
critical
505445Siemens RUGGEDCOM RST2428P Prototype Pollution (CVE-2025-13465)Tenable OT SecurityTenable.ot
high
505444Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23037)Tenable OT SecurityTenable.ot
medium
505443Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23025)Tenable OT SecurityTenable.ot
high
505442Siemens RUGGEDCOM RST2428P Stack-based Buffer Overflow (CVE-2025-69720)Tenable OT SecurityTenable.ot
high
505441Siemens RUGGEDCOM RST2428P Cross-site Scripting (CVE-2026-22610)Tenable OT SecurityTenable.ot
high
505440Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71190)Tenable OT SecurityTenable.ot
medium
505439Siemens RUGGEDCOM RST2428P User Interface (UI) Misrepresentation of Critical Information (CVE-2025-46394)Tenable OT SecurityTenable.ot
low
505438Siemens RUGGEDCOM RST2428P Incorrect Bitwise Shift of Integer (CVE-2025-40281)Tenable OT SecurityTenable.ot
medium
505437Siemens RUGGEDCOM RST2428P Improper Restriction of Operations within the Bounds of a Memory Buffer (CVE-2025-1352)Tenable OT SecurityTenable.ot
medium
505436Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23026)Tenable OT SecurityTenable.ot
medium
505435Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-39913)Tenable OT SecurityTenable.ot
medium
505434Siemens RUGGEDCOM RST2428P Insertion of Sensitive Information Into Sent Data (CVE-2025-66035)Tenable OT SecurityTenable.ot
high
505433Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23033)Tenable OT SecurityTenable.ot
medium
505432Siemens RUGGEDCOM RST2428P Cross-site Scripting (CVE-2025-66412)Tenable OT SecurityTenable.ot
high
505431Siemens RUGGEDCOM RST2428P NULL Pointer Dereference (CVE-2026-22976)Tenable OT SecurityTenable.ot
medium
505430Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71188)Tenable OT SecurityTenable.ot
medium
505429Siemens RUGGEDCOM RST2428P Out-of-bounds Write (CVE-2025-40345)Tenable OT SecurityTenable.ot
medium
505428Siemens RUGGEDCOM RST2428P Expired Pointer Dereference (CVE-2025-49795)Tenable OT SecurityTenable.ot
high
505427Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40264)Tenable OT SecurityTenable.ot
high
505426Siemens RUGGEDCOM RST2428P Improper Resource Shutdown or Release (CVE-2025-1376)Tenable OT SecurityTenable.ot
low
505425Siemens RUGGEDCOM RST2428P Race Condition (CVE-2025-40258)Tenable OT SecurityTenable.ot
high
505424Siemens RUGGEDCOM RST2428P Privilege Dropping / Lowering Errors (CVE-2026-35535)Tenable OT SecurityTenable.ot
high
505423Siemens RUGGEDCOM RST2428P Integer Overflow or Wraparound (CVE-2025-6052)Tenable OT SecurityTenable.ot
low
505422Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40252)Tenable OT SecurityTenable.ot
high
505421Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23031)Tenable OT SecurityTenable.ot
medium
505420Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23236)Tenable OT SecurityTenable.ot
high
505419Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71191)Tenable OT SecurityTenable.ot
medium
505418Siemens RUGGEDCOM RST2428P Authentication Bypass by Primary Weakness (CVE-2026-3784)Tenable OT SecurityTenable.ot
medium
505417Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71185)Tenable OT SecurityTenable.ot
medium
505416Siemens RUGGEDCOM RST2428P Stack-based Buffer Overflow (CVE-2025-6170)Tenable OT SecurityTenable.ot
low
505415Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40262)Tenable OT SecurityTenable.ot
medium
505414Siemens RUGGEDCOM RST2428P Infinite Loop (CVE-2026-23220)Tenable OT SecurityTenable.ot
medium
505413Siemens RUGGEDCOM RST2428P Missing Synchronization (CVE-2026-23229)Tenable OT SecurityTenable.ot
medium
505412Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71186)Tenable OT SecurityTenable.ot
medium
505411Siemens RUGGEDCOM RST2428P Multiple Releases of Same Resource or Handle (CVE-2025-40261)Tenable OT SecurityTenable.ot
medium
505410Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23038)Tenable OT SecurityTenable.ot
medium
505409Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40250)Tenable OT SecurityTenable.ot
medium
505408Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23032)Tenable OT SecurityTenable.ot
medium
505407Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40248)Tenable OT SecurityTenable.ot
high
505406Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-71189)Tenable OT SecurityTenable.ot
medium
505405Siemens RUGGEDCOM RST2428P NULL Pointer Dereference (CVE-2026-24515)Tenable OT SecurityTenable.ot
low
505404Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23230)Tenable OT SecurityTenable.ot
high
505403Siemens RUGGEDCOM RST2428P Permissive Regular Expression (CVE-2025-40271)Tenable OT SecurityTenable.ot
high
505402Siemens RUGGEDCOM RST2428P Use of Web Browser Cache Containing Sensitive Information (CVE-2026-41918)Tenable OT SecurityTenable.ot
medium
505401Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23238)Tenable OT SecurityTenable.ot
medium
505400Siemens RUGGEDCOM RST2428P Expired Pointer Dereference (CVE-2025-40280)Tenable OT SecurityTenable.ot
medium

Updated

IDNameProductFamilySeverity
321345ConnectWise ScreenConnect < 26.2 Improper Input Validation (CVE-2026-11596)NessusMisc.
medium
98538Environment Configuration File DetectedWeb App ScanningWeb Applications
high
93121Oracle Access Manager Webgate Information Disclosure (July 2016 CPU)NessusMisc.
medium
90860Oracle Application Testing Suite DetectionNessusMisc.
info
90679Oracle WebLogic Server Multiple Vulnerabilities (April 2016 CPU)NessusMisc.
critical
88087Oracle WebLogic Portal DetectionNessusMisc.
info
88086Oracle WebLogic Portal Apache Commons File Upload (January 2016 CPU)NessusMisc.
high
88053Oracle WebLogic Server Multiple Vulnerabilities (January 2016 CPU)NessusMisc.
high
87209Oracle WebLogic Server Java Object Deserialization RCE (Local Check)NessusMisc.
critical
86575Oracle Enterprise Manager Agent Installation Detection (credentialed check)NessusMisc.
info
84823Oracle WebLogic Server Multiple Vulnerabilities (July 2015 CPU)NessusMisc.
medium
82822Oracle WebLogic Server Multiple Vulnerabilities (April 2015 CPU) (POODLE)NessusMisc.
medium
81048Oracle Forms and Reports Multiple Unspecified Vulnerabilities (January 2015 CPU)NessusMisc.
medium
80965Oracle Enterprise Manager Cloud Control Installation Detection (credentialed check)NessusMisc.
info
80909Oracle WebLogic Server Multiple Vulnerabilities (January 2015 CPU)NessusMisc.
high
78910Oracle JDeveloper Installation DetectionNessusMisc.
info
78699Oracle Adaptive Access Manager Server DetectionNessusMisc.
info
78541Oracle WebLogic Server Multiple Vulnerabilities (October 2014 CPU)NessusMisc.
high
78076Oracle Application Express (APEX) / REST Data Services Listener Installation DetectionNessusMisc.
info
77421Oracle Access Manager Unspecified Vulnerability (credentialed check, April 2014 CPU)NessusWindows
medium
76708Oracle BI Publisher Installation DetectionNessusMisc.
info
76617Oracle HTTP Server InstalledNessusMisc.
info
76527Oracle WebLogic Server Multiple Vulnerabilities (July 2014 CPU)NessusMisc.
high
74466Oracle Siebel CRM Server DetectionNessusWindows
info
74151Oracle Event Processing CVE-2014-2424 Unspecified Vulnerability (April 2014 CPU)NessusMisc.
medium
74150Oracle Event Processing Installation Detection (credentialed check)NessusMisc.
info
74042Oracle WebLogic Server Multiple Vulnerabilities (April 2013 CPU)NessusCGI abuses
medium
73914Oracle WebLogic Server Security Subcomponent Unspecified Vulnerability (April 2014 CPU)NessusMisc.
medium
73913Oracle WebLogic Server DetectionNessusMisc.
info
73825Oracle Data Quality and Profiling Client DetectionNessusWindows
info
73614Oracle Access Manager Unspecified WebGate Webserver Plugin VulnerabilityNessusMisc.
medium
72776Oracle WebCenter Sites Local Installation DetectionNessusWindows
info
72213Oracle Access Manager Server Installation Detection (credentialed check)NessusMisc.
info
72064Oracle WebCenter Portal Installation DetectionNessusMisc.
info
72043Oracle Internet Directory LDAP Server Unspecified Remote Information DisclosureNessusMisc.
medium
72042Oracle Identity Manager DetectionNessusMisc.
info
71644Oracle Database Patch Info (credentialed check)NessusDatabases
info
71643Oracle Installed Software Enumeration (Windows)NessusWindows
info
71642Oracle Installed Software Enumeration (Linux / Unix)NessusMisc.
info
65047KSplice : Installed PatchesNessusGeneral
info
505361Qnap QTS Incorrect Permission Assignment for Critical Resource (CVE-2025-66276)Tenable OT SecurityTenable.ot
critical
505228Hitachi Energy RTU500 Product Allocation of Resources Without Limits or Throttling (CVE-2025-59375)Tenable OT SecurityTenable.ot
high
505227Hitachi Energy RTU500 Product Uncontrolled Recursion (CVE-2024-8176)Tenable OT SecurityTenable.ot
high
505207Hitachi Energy RTU500 Product Incomplete List of Disallowed Inputs (CVE-2026-1773)Tenable OT SecurityTenable.ot
high
505206Hitachi Energy RTU500 Product Improper Handling of Insufficient Permissions or Privileges (CVE-2026-1772)Tenable OT SecurityTenable.ot
medium
502682Korenix JetNet Use of Hard-coded Credentials (CVE-2020-12501)Tenable OT SecurityTenable.ot
critical
502071MikroTik RouterOS Uncontrolled Resource Consumption (CVE-2012-6050)Tenable OT SecurityTenable.ot
medium
502064MikroTik RouterOS Out-of-Bounds Read in SNMP (CVE-2022-45315)Tenable OT SecurityTenable.ot
critical
501831INEA ME RTU Improper Authentication (CVE-2023-29155)Tenable OT SecurityTenable.ot
critical
501828Rockwell Automation Stratix 5900 Improper Handling of Exceptional Conditions (CVE-2015-0643)Tenable OT SecurityTenable.ot
high