CGI abuses Family for Nessus

IDNameSeverity
190929Liferay Portal 7.4.x < 7.4.3.102 XSS
critical
190893ConnectWise ScreenConnect Service < 23.9.8 Authentication Bypass (Direct Check)
critical
190887VMWare Aria Operations < 8.16 PrivEsc (VMSA-2024-0004)
medium
190868GitLab 16.4 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2024-0861)
medium
190867GitLab 15.1 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2024-0410)
high
190866GitLab 11.3 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2023-6736)
medium
190865GitLab 16.9.0 < 16.9.1 (CVE-2024-1451)
high
190864GitLab 16.5 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2023-6477)
medium
190863GitLab 12.0 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2023-4895)
medium
190862GitLab 0 < 16.7.6 / 16.8 < 16.8.3 / 16.9 < 16.9.1 (CVE-2023-3509)
medium
190786Joomla 1.5.x < 3.10.15 / 4.0.x < 4.4.3 / 5.0.x < 5.0.3 Multiple Vulnerabilities (5904-joomla-5-0-3-and-4-4-3-security-and-bug-fix-release)
medium
190756Adobe FrameMaker Publishing Server Authentication Bypass (CVE-2024-20738)
critical
190508Mattermost Server < 8.1.8 / 9.x < 9.1.5 / 9.2.x < 9.2.4 (MMSA-2023-00276)
medium
190493TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-004)
medium
190467TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-002)
high
190466TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-001)
medium
190465TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-005)
medium
190453TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-003)
medium
190452TYPO3 8.0.0 < 8.7.57 ELTS / 9.0.0 < 9.5.46 ELTS / 10.0.0 < 10.4.43 ELTS / 11.0.0 < 11.5.35 / 12.0.0 < 12.4.11 / 13.0.1 (TYPO3-CORE-SA-2024-006)
high
190362Kibana 8.0.x < 8.12.1 (ESA-2024-01)
medium
190346CKEditor Detection via CDN
info
190345GitLab 15.11 < 16.6.7 / 16.7 < 16.7.5 / 16.8 < 16.8.2 (CVE-2023-6386)
medium
190344GitLab 16.8 < 16.8.2 (CVE-2024-1250)
medium
190219VMWare Aria Operations for Networks 6.x < 6.12 Multiple Vulnerabilities (VMSA-2024-0002)
high
190141SolarWinds Platform 2023.4.0 < 2024.1 Multiple Vulnerabilities SQLI
high
190108GitLab 13.3.3 < 16.6.7 / 16.7 < 16.7.5 / 16.8 < 16.8.2 (CVE-2024-1066)
medium
190107GitLab 16.4 < 16.6.7 / 16.7 < 16.7.5 / 16.8 < 16.8.2 (CVE-2023-6840)
medium
190095SolarWinds Platform < 2023.4 Multiple Vulnerabilities
high
190094ManageEngine ADAudit Plus < Build 7271 Multiple Vulnerabilities
critical
190063Ivanti Connect Secure 9.x / 22.x SSRF-RCE Chain (CVE-2024-21893)
high
190062Ivanti Connect Secure 9.x / 22.x SSRF (CVE-2024-21893)
high
190061Ivanti Policy Secure 9.x / 22.x SSRF (CVE-2024-21893)
high
190060Ivanti Policy Secure 9.x / 22.x SSRF-RCE Chain (CVE-2024-21893)
high
189951Ivanti Connect Secure 9.x / 22.x Command Injection Vulnerability (CVE-2024-21887)
critical
189950Ivanti Policy Secure 9.x / 22.x Command Injection Vulnerability (CVE-2024-21887)
critical
189949Ivanti Policy Secure 9.x / 22.x Authentication Bypass Vulnerability (CVE-2023-46805)
high
189948Ivanti Connect Secure 9.x / 22.x Authentication Bypass Vulnerability (CVE-2023-46805)
high
189904ManageEngine ADAudit Plus < Build 7270 Directory Traversal
low
189825WordPress 6.0 < 6.4.3
high
189636Atlassian Confluence 8.0 < 8.5.4 (CONFSERVER-93833) (Direct Check)
critical
189596GitLab 13.7 < 16.6.6 / 16.7 < 16.7.4 / 16.8 < 16.8.1 (CVE-2023-5933)
medium
189595GitLab 0 < 16.6.6 / 16.7 < 16.7.4 / 16.8 < 16.8.1 (CVE-2023-5612)
medium
189594GitLab 16.0 < 16.5.8 / 16.6 < 16.6.6 / 16.7 < 16.7.4 / 16.8 < 16.8.1 (CVE-2024-0402)
critical
189593GitLab 14.0 < 16.6.6 / 16.7 < 16.7.4 / 16.8 < 16.8.1 (CVE-2024-0456)
medium
189592GitLab 12.7 < 16.6.6 / 16.7 < 16.7.4 / 16.8 < 16.8.1 (CVE-2023-6159)
medium
189534SolarWinds Platform < 2023.3 Multiple Vulnerabilities
high
189513MinIO Information Disclosure (CVE-2023-28432)
high
189505ManageEngine ServiceDesk Plus MSP < 14.5 Build 14504 XSS
medium
189463Jenkins LTS < 2.426.3 / Jenkins weekly < 2.442 Multiple Vulnerabilities
critical
189462Jenkins plugins Multiple Vulnerabilities (2024-01-24)
high