FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
144823FreeBSD : chromium -- multiple vulnerabilities (d153c4d2-50f8-11eb-8046-3065ec8fd3ec)
critical
144815FreeBSD : Gitlab -- multiple vulnerabilities (a2a2b34d-52b4-11eb-87cb-001b217b3468)
high
144673FreeBSD : InspIRCd websocket module double free vulnerability (53e9efa1-4be7-11eb-8558-3085a9a47796)
high
144658FreeBSD : gitea -- multiple vulnerabilities (2739b88b-4b88-11eb-a4c0-08002734b9ed)
high
144625FreeBSD : Intel CPU issues (fbcba194-ac7d-11ea-8b5e-b42e99a1b9c3)
medium
144582FreeBSD : postsrsd -- Denial of service vulnerability (eb2845c4-43ce-11eb-aba5-00a09858faf5)
high
144573FreeBSD : asterisk -- Remote crash in res_pjsip_diversion (6adf6ce0-44a6-11eb-95b7-001999f8d30b)
high
144569FreeBSD : powerdns -- Various issues in GSS-TSIG support (61d89849-43cb-11eb-aba5-00a09858faf5)
critical
144446FreeBSD : vault -- User Enumeration via LDAP auth (cc1fd3da-b8fd-4f4d-a092-c38541c0f993)
medium
144193FreeBSD : Unbound/NSD -- Denial of service vulnerability (388ebb5b-3c95-11eb-929d-d4c9ef517024)
medium
144191FreeBSD : glpi -- Unauthenticated File Deletion (675e5098-3b15-11eb-af2a-080027dbe4b7)
critical
144190FreeBSD : glpi -- Any CalDAV calendars is read-only for every authenticated user (6a467439-3b38-11eb-af2a-080027dbe4b7)
medium
144188FreeBSD : glpi -- weak csrf tokens (b64edef7-3b10-11eb-af2a-080027dbe4b7)
critical
144187FreeBSD : glpi -- SQL injection for all usages of 'Clone' feature (7f163c81-3b12-11eb-af2a-080027dbe4b7)
high
144185FreeBSD : LibreSSL -- NULL pointer dereference (88dfd92f-3b9c-11eb-929d-d4c9ef517024)
high
144184FreeBSD : glpi -- SQL Injection in Search API (0ba61fcc-3b38-11eb-af2a-080027dbe4b7)
medium
144182FreeBSD : glpi -- multiple related stored XSS vulnerabilities (27a230a2-3b11-11eb-af2a-080027dbe4b7)
medium
144179FreeBSD : glpi -- Account takeover vulnerability (d3f60db0-3aea-11eb-af2a-080027dbe4b7)
high
144177FreeBSD : glpi -- Insecure Direct Object Reference on ajax/getDropdownValue.php (695b2310-3b3a-11eb-af2a-080027dbe4b7)
medium
144174FreeBSD : jasper -- heap overflow vulnerability (85349584-3ba4-11eb-919d-08002728f74c)
high
144172FreeBSD : glpi -- leakage issue with knowledge base (5acd95db-3b16-11eb-af2a-080027dbe4b7)
medium
144167FreeBSD : py-matrix-synapse -- DoS on Federation API (cfa0be42-3cd7-11eb-9de7-641c67a117d8)
medium
144165FreeBSD : glpi -- Unauthenticated Stored XSS (09eef008-3b16-11eb-af2a-080027dbe4b7)
medium
144158FreeBSD : glpi -- bypass of the open redirect protection (3a63f478-3b10-11eb-af2a-080027dbe4b7)
medium
144157FreeBSD : glpi -- Insecure Direct Object Reference on ajax/comments.ph (190176ce-3b3a-11eb-af2a-080027dbe4b7)
medium
144148FreeBSD : glpi -- Public GLPIKEY can be used to decrypt any data (b3695b08-3b3a-11eb-af2a-080027dbe4b7)
medium
144147FreeBSD : glpi -- Reflexive XSS in Dropdown menus (07aecafa-3b12-11eb-af2a-080027dbe4b7)
medium
144146FreeBSD : p11-kit -- Multiple vulnerabilities (fdc49972-3ca7-11eb-929d-d4c9ef517024)
medium
144144FreeBSD : glpi -- Remote Code Execution (RCE) via the backup functionality (832fd11b-3b11-11eb-af2a-080027dbe4b7)
high
144133FreeBSD : glpi -- SQL injection for all helpdesk instances (b3aae7ea-3aef-11eb-af2a-080027dbe4b7)
high
144126FreeBSD : glpi -- able to read any token through API user endpoint (aec9cbe0-3b0f-11eb-af2a-080027dbe4b7)
high
144125FreeBSD : glpi -- Improve encryption algorithm (0309c898-3aed-11eb-af2a-080027dbe4b7)
high
144122FreeBSD : glpi -- Multiple SQL Injections Stemming From isNameQuoted() (b7abdb0f-3b15-11eb-af2a-080027dbe4b7)
high
144028FreeBSD : cURL -- Multiple vulnerabilities (3c77f139-3a09-11eb-929d-d4c9ef517024)
high
143591FreeBSD : OpenSSL -- NULL pointer de-reference (1d56cfc5-3970-11eb-929d-d4c9ef517024)
medium
143543FreeBSD : Gitlab -- Multiple vulnerabilities (5d5e5cda-38e6-11eb-bbbf-001b217b3468)
medium
143526FreeBSD : consul -- Fix Consul Connect CA private key configuration (8d17229f-3054-11eb-a455-ac1f6b16e566)
medium
143517FreeBSD : chromium -- multiple vulnerabilities (01ffd06a-36ed-11eb-b655-3065ec8fd3ec)
high
143510FreeBSD : gitea -- multiple vulnerabilities (b99492b2-362b-11eb-9f86-08002734b9ed)
high
143467FreeBSD : FreeBSD -- Multiple vulnerabilities in rtsold (e2748c9d-3483-11eb-b87a-901b0ef719ab)
critical
143466FreeBSD : FreeBSD -- ICMPv6 use-after-free in error message handling (8eed0c5c-3482-11eb-b87a-901b0ef719ab)
high
143437FreeBSD : xorg-server -- Multiple input validation failures in X server XKB extension (76c8b690-340b-11eb-a2b7-54e1ad3d6335)
high
143306FreeBSD : nomad -- multiple vulnerabilities (618010ff-3044-11eb-8112-000c292ee6b8)
critical
143178FreeBSD : gitea -- multiple vulnerabilities (55facdb0-2c24-11eb-9aac-08002734b9ed)
high
143175FreeBSD : Node.js -- November 2020 Security Releases (ad792169-2aa4-11eb-ab71-0022489ad614)
high
143172FreeBSD : mutt -- authentication credentials being sent over an unencrypted connection (dc132c91-2b71-11eb-8cfd-4437e6ad11c4)
medium
142952FreeBSD : mozjpeg -- heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file (040707f9-0b2a-11eb-8834-00155d01f202)
high
142946FreeBSD : libjpeg-turbo -- Issue in the PPM reader causing a buffer overrun in cjpeg, TJBench, or the tjLoadImage() function. (23a667c7-0b28-11eb-8834-00155d01f202)
high
142940FreeBSD : mantis -- multiple vulnerabilities (19259833-26b1-11eb-a239-1c697a013f4b)
medium
142883FreeBSD : go -- math/big: panic during recursive division of very large numbers; cmd/go: arbitrary code execution at build time through cgo (db4b2f27-252a-11eb-865c-00155d646400)
high