Nessus の Web Servers ファミリー

ID名前深刻度
142059IBM WebSphere Application Server 8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.18/9.0.x < 9.0.5.5のSSRF(CVE-2019-17566)
high
141920IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/ 8.0.0.x<= 8.0.0.15/ 8.5.x< 8.5.5.14/ 9.0.x< 9.0.0.8の情報漏えい (CVE-2017-1743)
medium
141919IBM WebSphere Application Server 7.0.0.x< 7.0.0.45/8.0.0.x < 8.0.0.14/8.5.x < 8.5.5.13/9.0.x < 9.0.0.5のHTTP応答分割 (CVE-2017-1503)
medium
141918IBM WebSphere Application Server 6.1.0.x< 6.1.0.47/7.0.0.x < 7.0.0.31/8.0.0.x < 8.0.0.7/8.5.x < 8.5.5.1のクリックジャッキング (CVE-2013-1571)
medium
141917IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/ 8.0.0.x<= 8.0.0.15/ 8.5.x< 8.5.5.14/ 9.0.x< 9.0.0.8の情報漏えい (CVE-2012-5783)
medium
141916IBM WebSphere Application Server 9.0.0.4の脆弱な暗号化 (CVE-2017-1504)
medium
141915IBM WebSphere Application Server 9.0.x< 9.0.0.9の MITM (CVE-2018-8039)
high
141914IBM WebSphere Application Server 6.1.0.x<= 6.1.0.47/7.0.0.x < 7.0.0.39/8.0.0.x < 8.0.0.11/8.5.x < 8.5.5.7 の LogJam (CVE-2015-4000)
low
141853IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.17/9.0.x < 9.0.5.2のBeanutilsの脆弱性 (CVE-2019-10086)
high
141852IBM WebSphere Application Server 7.0.0.x< 7.0.0.45/8.0.0.x < 8.0.0.15/8.5.x < 8.5.5.13/9.0.x < 9.0.0.7の情報漏えい (CVE-2017-1681)
low
141851IBM WebSphere Application Server 8.0.0.x< 8.0.0.14/8.5.x < 8.5.5.12/9.0.x < 9.0.0.5の脆弱なセキュリティバインディング (CVE-2017-1501)
medium
141850IBM WebSphere Application Server 7.0.0.x< 7.0.0.43/8.0.0.x < 8.0.0.13/8.5.x < 8.5.5.11/9.0.x < 9.0.0.1のFileUpload DoS (CVE-2016-3092)
medium
141566IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.14/9.0.x <= 9.0.0.9の複数の脆弱性 (711865)
high
141565IBM WebSphere Application Server 8.0.0.x< 8.0.0.13/8.5.x < 8.5.5.11/9.0.x < 9.0.0.2の情報漏洩 (CVE-2016-9736)
medium
141564IBM WebSphere Application Server 8.0.0.x< 8.0.0.15/8.5.x < 8.5.5.13/9.0.x < 9.0.0.7のRCE (CVE-2016-1000031)
critical
141563IBM WebSphere Application Server 9.0.x< 9.0.0.7のDoS (CVE-2017-12624)
medium
141562IBM WebSphere Application Server 9.0.x< 9.0.5.3のDoS (CVE-2019-12406)
medium
141561IBM WebSphere Application Server 8.0.0.x< 8.0.0.15/8.5.x < 8.5.5.13の複数の脆弱性 (296865)
high
141498IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.17/9.0.x < 9.0.5.1のファイルトラバーサル (CVE-2019-4268)
medium
141497IBM WebSphere Application Server 8.5.x< 8.5.5.15/9.0.0.x < 9.0.0.11のXSS (CVE-2019-4030)
medium
141473IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/ 8.0.0.x<= 8.0.0.15/ 8.5.x< 8.5.5.19/ 9.0.x< 9.0.5.6の情報漏えい (CVE-2020-4576)
high
141472IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.17/9.0.x < 9.0.5.1XSS (CVE-2019-4270)
medium
141469IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/8.0.0.x <= 8.0.0.15/8.5.x < 8.5.5.18/9.0.x < 9.0.5.6XSS (CVE-2020-4578)
medium
141468IBM WebSphere Application Server 8.5.x< 8.5.5.16/9.0.x < 9.0.5.0のXSS (CVE-2019-4271)
low
141446Apache Tomcat 9.0.0.M1 < 9.0.38
medium
141394Apache HTTP Serverインストール済み (Linux)
info
141263Apache Tomcatのサイト列挙
info
140791IBM WebSphere Application Server 7.0.0.x〜7.0.0.45 / 8.0.0.x〜8.0.0.15 / 8.5.x〜8.5.5.17 / 9.0.x〜9.0.5.5 XXE(CVE-2020-4643)
high
140735HTTPスマグリングの検出
medium
140655Microsoft Internet Information Services(IIS)のサイト列挙
info
140504SAP NetWeaver AS Javaの複数のXSS(2953112)
medium
140464IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x <= 8.5.5.14 / 9.0.x <= 9.0.0.9 XSS(729547)
medium
140463IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x <= 8.5.5.13 / 9.0.x <= 9.0.0.7情報漏えい(715271)
medium
140462IBM WebSphere Application Server 8.0.0.x <= 8.0.0.15 / 8.5.x <= 8.5.5.13 / 9.0.x <= 9.0.0.8情報漏えい(711983)
high
140453IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x <= 8.5.5.17 / 9.0.x <= 9.0.5.4 RCE(6255074)
high
139871IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.17 / 9.0.x < 9.0.5.4 RCE(6258333)
critical
139615Microsoft Internet Information Services(IIS)がインストールされています
info
139583SAP NetWeaver AS Java DoS(2941315)
high
139574Apache 2.4.x < 2.4.46の複数の脆弱性
critical
139065IBM WebSphere Application Server 8.5.x < 8.5.5.18サーバーサイドリクエストフォージェリ(6209099)
medium
138882Cisco Small Business Router Web UIの検出
info
138878IBM WebSphere Application Server 7.0.0.x<= 7.0.0.45/ 8.0.0.x<= 8.0.0.15/ 8.5.x< 8.5.5.18/ 9.0.x< 9.0.5.5RCE (6250059)
high
138851Apache Tomcat 7.0.27 < 7.0.105
high
138762SAP NetWeaver: 認証バイパス(CVE-2020-6287)(直接チェック)
critical
138591Apache Tomcat 9.0.0.M1< 9.0.37の複数の脆弱性
high
138574Apache Tomcat 8.5.0< 8.5.57の複数の脆弱性
high
138509Oracle WebLogic IIOP JNDI検索RCEの直接チェック
critical
138506SAP NetWeaver AS Javaの複数の脆弱性
critical
138499SAP Netweaver Application Server(AS)HTTP Serverの検出
info
138098Apache Tomcat 9.0.0.M1 < 9.0.36
high