CGI abuses Family for Nessus

IDNameSeverity
83350Magento XML-RPC XXE Arbitrary File Disclosure
medium
83348HP Operations Orchestration 10.x Remote Information Disclosure
low
83346.bash_history Files Disclosed via Web Server
medium
83305Magento Detection
info
83304Magento Mage_Adminhtml_Block_Report_Search_Grid Class 'popularity' Parameter SQLi
medium
83297MySQL Enterprise Monitor 3.0.x < 3.0.5 Apache Struts DMI Multiple Vulnerabilities
critical
83296MySQL Enterprise Monitor 3.0.x < 3.0.19 Apache Struts Predictable Token XSRF
medium
83295MySQL Enterprise Monitor 3.0.x < 3.0.11 Multiple Vulnerabilities
high
83294MySQL Enterprise Monitor < 2.3.20 Apache Struts Predictable Token XSRF
medium
83293MySQL Enterprise Monitor < 2.3.17 Multiple Vulnerabilities
high
83292MySQL Enterprise Monitor < 2.3.14 Apache Struts Multiple Vulnerabilities
critical
83289Novell ZENworks Configuration Management < 11.3.2 Remote Code Execution (intrusive check)
high
83278HP Operations Orchestration 10.x Authentication Bypass
high
83141Request Tracker Unsupported Version Detection
critical
83140Request Tracker 4.0.x < 4.0.23 / 4.2.x < 4.2.10 Multiple Vulnerabilities
medium
83138WordPress <= 3.9.5 / 4.1.x < 4.1.4 / 4.2.x < 4.2.1 Comments Stored XSS
medium
83055IBM WebSphere Portal Multiple Vulnerabilities (PI37356, PI37661)
medium
83053WordPress < 3.7.6 / 3.8.6 / 3.9.4 / 4.1.2 Multiple Vulnerabilities
medium
83036HP Network Automation Multiple Remote Vulnerabilities (HPSBMU03264)
medium
83035PHP 5.6.x < 5.6.8 Multiple Vulnerabilities
critical
83034PHP 5.5.x < 5.5.24 Multiple Vulnerabilities
critical
83033PHP 5.4.x < 5.4.40 Multiple Vulnerabilities
critical
83031Fortinet FortiWeb < 5.3.5 Multiple Vulnerabilities
medium
82996Fortinet FortiMail < 5.0.9 / 5.1.6 / 5.2.4 HTTP Debug Information Disclosure
medium
82898TWiki 'debugenableplugins' Parameter RCE
high
82851IBM WebSphere Portal Unspecified Reflected XSS (PI30620)
low
82850IBM WebSphere Portal 8.0.0.x < 8.0.0.1 CF15 Multiple Vulnerabilities
medium
82704VMware vCenter Operations Manager Web UI Default Credentials
high
82581GNU Bash Incomplete Fix Remote Code Injection (Shellshock)
high
82533Visualware MyConnection Server Web Detection
info
82472ManageEngine Desktop Central < 9 Build 90135 Unauthenticated Admin Password Reset
critical
82082ManageEngine Desktop Central < 9 build 90103 XSRF
medium
82081ManageEngine Desktop Central Remote Security Bypass
critical
82080ManageEngine Desktop Central Remote Security Bypass (Intrusive Check)
critical
82079ManageEngine Desktop Central Arbitrary File Upload and RCE (Safe Check)
high
82078ManageEngine Desktop Central statusUpdate Arbitrary File Upload RCE (intrusive check)
high
82029IBM WebSphere Portal 8.0.0.x < 8.0.0.1 CF15 / 8.5.0.0 < 8.5.0.0 CF05 Multiple XSRF / XSS (PI34987, PI33329, PI35228)
medium
82028Apache Solr < 4.10.5 'plugin.js' XSS
medium
82027PHP 5.6.x < 5.6.7 Multiple Vulnerabilities
critical
82026PHP 5.5.x < 5.5.23 Multiple Vulnerabilities
critical
82025PHP 5.4.x < 5.4.39 Multiple Vulnerabilities
critical
81980Cisco Prime Security Manager Network Time Protocol Daemon (ntpd) Multiple Vulnerabilities (cisco-sa-20141222-ntpd)
high
81975Drupal 6.x < 6.35 / 7.x < 7.35 Multiple Vulnerabilities
medium
81919HP Universal Configuration Management Database Server Detection
info
81918HP Universal Configuration Management Database Data Flow Probe Gateway Detection
info
81917HP Universal Configuration Management Database Server Authentication Bypass
medium
81916HP Universal Configuration Management Database Data Flow Probe Gateway Cross-Site Tracing
medium
81823ManageEngine NetFlow Analyzer Detection
info
81822ManageEngine NetFlow Analyzer Default Credentials
high
81821ManageEngine NetFlow Analyzer Multiple Path Traversal and File Access
medium