Nessus の CGI abuses ファミリー

ID名前深刻度
158383Splunk Enterprise 8.1.x < 8.1.7.2/8.2.x < 8.2.3.3 Log4j
critical
158361ManageEngine ADManager Plus < ビルド 7115 RCE
critical
158154PHP 8.1.x< 8.1.3
critical
158133PHP 7.4.x< 7.4.28
critical
158095Drupal 7.x< 7.88/9.2.x < 9.2.13/9.3.x < 9.3.6の複数の脆弱性 (drupal-2022-02-16)
high
158092Jenkins Enterprise および Operations Center < 2.277.43.0.3/ 2.319.1.5の複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 12 月 1 日)
high
158059Jenkins Enterprise および Operations Center < 2.277.43.0.5/ 2.319.2.5の複数の脆弱性 (CloudBees セキュリティアドバイザリ 2022 年 1 月 12 日)
high
157860Jenkins LTS < 2.319.3/ Jenkins weekly < 2.334の複数の脆弱性
high
157383ManageEngine ServiceDesk Plus の複数バージョンの認証バイパス
critical
157377Nagios XI 5.7.5コマンドインジェクション
high
157338Jenkins Enterprise and Operations Center < 2.303.30.0.4/ 2.319.2.9RCE (CloudBees セキュリティアドバイザリ 2022 年 1 月 28 日)
medium
157290ManageEngine NCM < 12.5.465 SQLi
critical
157289ManageEngine Network Configuration Manager (NCM) の検出
info
157176Atlassian Jira < 8.13.15/8.14.0 < 8.20.3 RCE (JRASERVER-73067)
high
157158Atlassian Jira < 8.19.0 破損したアクセスコントロール (JRASERVER-72737)
medium
157152Atlassian Jira < 8.21.0 破損したアクセス制御 (JRASERVER-73071)
medium
157069ThoughtWorks GoCD のデフォルトの管理者アクセス
critical
157068GoCD < 21.3.0パストラバーサル (ダイレクト)
critical
157066GoCD < 21.3.0パストラバーサル
critical
156930Jenkins プラグインの複数の脆弱性 (2022-01-12)
high
156929Jenkins LTS < 2.319.2/ Jenkins weekly < 2.330の複数の脆弱性
high
156893Oracle Primavera Gateway (2022 年 1 月 CPU)
medium
156891Oracle Primavera P6 Enterprise Project Portfolio Management (2022 年 1 月 CPU)
high
156863Drupal 7.x< 7.86/9.2.x < 9.2.11/9.3.x < 9.3.3の複数の脆弱性 (drupal-2022-01-19)
medium
156832Oracle Primavera Unifier (2022 年 1 月 CPU)
critical
156753Apache Druid Log4Shell 直接チェック (CVE-2021-44228)
critical
156558Apache JSPWiki Log4Shell 直接チェック (CVE-2021-44228)
critical
156546WordPress 5.8< 5.8.3/ 5.7< 5.7.5/ 5.6< 5.6.7/ 5.5< 5.5.8/ 5.4< 5.4.9/ 5.3< 5.3.11/ 5.2< 5.2.14/ 5.1< 5.1.12/ 5.0< 5.0.15/ 4.9< 4.9.19/ 4.8< 4.8.18/ 4.7< 4.7.22/ 4.6< 4.6.22/ 4.5< 4.5.25/ 4.4< 4.4.26/ 4.3< 4.3.27/ 4.2< 4.2.31/ 4.1< 4.1.34/ 4.0< 4.0.34/ 3.9< 3.9.35/ 3.8< 3.8.37/ 3.7< 3.7.37
high
156473Apache OFBiz Log4Shell 直接チェック (CVE-2021-44228)
critical
156471Apache Solr Log4Shell 直接チェック (CVE-2021-44228)
critical
156443JQuery UI < 1.13.0複数の XSS
medium
156439jQuery UI 検出
info
156208SolarWinds Orion Platform 2020.2.6 < 2020.2.6 HF3 SQLI
high
156193Adobe Connect <= 11.3 任意のファイルシステム書き込みの脆弱性 (APSB21-112)
medium
156016パスの列挙による Apache Log4Shell RCE の検出 (Direct Check HTTP)
critical
155961SonicWall Secure Mobile Access の複数の脆弱性 (SNWLID-2021-0026)
critical
155864ManageEngine ServiceDesk Plus < 11.3ビルド 11306 / ManageEngine ServiceDesk Plus MSP < 10.5ビルド 10530 RCE
critical
155841Jenkins Enterprise および Operations Center < 2.222.43.0.2/2.249.30.0.2/2.263.2.3 の任意のファイルの読み取り (CloudBees セキュリティアドバイザリ 2021 年 1 月 26 日)
medium
155735Jenkins プラグインの複数の脆弱性 (Jenkins セキュリティアドバイザリ 2021 年 3 月 30 日)
high
155731Liferay Portal 7.3.2 < 7.3.6 XSS
medium
155730PHP 8.1.x < 8.1.0 の複数の脆弱性
high
155717ManageEngine ADAudit Plus の検出
info
155716ManageEngine ADAudit Plus < ビルド 7006 ファイルアップロード RCE
critical
155715Jenkins Enterprise および Operations Center < 2.222.43.0.1 / 2.249.30.0.1 / 2.263.2.2複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 1 月 13 日)
high
155678Liferay Portal 6.2.x < 6.2.5 / 7.0.x < 7.0.6 / 7.1.x < 7.1.3 / 7.2.x < 7.2.1 RCE
critical
155661Jenkins Enterprise および Operations Center < 2.249.33.0.1 / 2.277.42.0.1 / 2.303.2.5複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 10 月 6 日)
medium
155633Jenkins Enterprise および Operations Center < 2.222.43.0.3 rev2/2.249.30.0.3 rev2/2.277.1.2 rev2 の複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 3 月 18 日)
high
155632ManageEngine Log360 < ビルド 5235 データベース構成の上書き RCE
critical
155631Jenkins Enterprise および Operations Center < 2.277.43.0.2/2.303.3.3 の複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 11 月 4 日)
critical
155630Jenkins Enterprise および Operations Center < 2.222.43.0.2 rev3 / 2.249.30.0.2 rev3 / 2.263.4.1 rev2 の複数の脆弱性 (CloudBees セキュリティアドバイザリ 2021 年 2 月 24 日)
high