FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
124609FreeBSD : gitea -- multiple vulnerabilities (a1de4ae9-6fda-11e9-9ba0-4c72b94353b5)
high
124608FreeBSD : comms/hylafax -- Malformed fax sender remote code execution in JPEG support (3df5a920-6edc-11e9-a44b-0050562a4d7b)
critical
124560FreeBSD : Gitlab -- Information Disclosure (4faac805-6be0-11e9-a685-001b217b3468)
high
124429FreeBSD : Dovecot -- Multiple vulnerabilities (3f98ccb3-6b8a-11e9-9b5c-a4badb296695)
high
124374FreeBSD : Gitlab -- Multiple vulnerabilities (1138b39e-6abb-11e9-a685-001b217b3468)
medium
124353FreeBSD : buildbot -- CRLF injection in Buildbot login and logout redirect code (5536ea5f-6814-11e9-a8f7-0050562a4d7b)
medium
124287FreeBSD : py-yaml -- arbitrary code execution (f6ea18bb-65b9-11e9-8b31-002590045d9c)
critical
124286FreeBSD : drupal -- Drupal core - Moderately critical (2bad8b5d-66fb-11e9-9815-78acc0a3b880)
critical
124224FreeBSD : FreeBSD -- EAP-pwd message reassembly issue with unexpected fragment (a207bbd8-6572-11e9-8e67-206a8a720317)
high
124223FreeBSD : FreeBSD -- SAE confirm missing state validation (98b71436-656d-11e9-8e67-206a8a720317)
high
124222FreeBSD : FreeBSD -- SAE side-channel attacks (7e53f9cc-656d-11e9-8e67-206a8a720317)
medium
124221FreeBSD : FreeBSD -- EAP-pwd side-channel attack (60129efe-656d-11e9-8e67-206a8a720317)
low
124220FreeBSD : Istio -- Security vulnerabilities (484d3f5e-653a-11e9-b0e3-1c39475b9f84)
critical
124219FreeBSD : FreeBSD -- EAP-pwd missing commit validation (2da3cb25-6571-11e9-8e67-206a8a720317)
high
124210FreeBSD : GnuTLS -- double free, invalid pointer access (fb30db8f-62af-11e9-b0de-001cc0382b2f)
high
124209FreeBSD : Ghostscript -- Security bypass vulnerability (5ed7102e-6454-11e9-9a3a-001cc0382b2f)
medium
124183FreeBSD : dovecot -- json encoder crash (a64aa22f-61ec-11e9-85b9-a4badb296695)
high
124182FreeBSD : libssh2 -- multiple issues (6e58e1e9-2636-413e-9f84-4c0e21143628)
critical
124129FreeBSD : gitea -- remote code execution (b747783f-5fb6-11e9-b2ac-08002705f877)
high
124047FreeBSD : wget -- security flaw in caching credentials passed as a part of the URL (a737eb11-5cfc-11e9-ab87-8cec4bf8fcfb)
high
124046FreeBSD : MySQL -- multiple vulnerabilities (4e1997e8-5de0-11e9-b95c-b499baebfeaf)
high
123982FreeBSD : Gitlab -- Group Runner Registration Token Exposure (a0602fa0-5c1c-11e9-abd6-001b217b3468)
medium
123981FreeBSD : jenkins -- multiple vulnerabilities (8e9c3f5a-715b-4336-8d05-19babef55e9e)
high
123980FreeBSD : Flash Player -- multiple vulnerabilities (45d89773-5b64-11e9-80ed-d43d7ef03aa6)
critical
123809FreeBSD : clamav -- multiple vulnerabilities (84ce26c3-5769-11e9-abd6-001b217b3468)
high
123645FreeBSD : Gitlab -- Multiple vulnerabilities (da459dbc-5586-11e9-abd6-001b217b3468)
high
123644FreeBSD : Apache -- Multiple vulnerabilities (cf2105c6-551b-11e9-b95c-b499baebfeaf)
high
123574FreeBSD : Kubectl -- Potential directory traversal (6a0129bf-54ad-11e9-987c-1c39475b9f84)
medium
123540FreeBSD : Jupyter notebook -- open redirect vulnerability (fe7e322f-522d-11e9-98b5-216e512dad89)
medium
123539FreeBSD : znc -- Denial of Service (b22d6d4c-53b9-11e9-9310-28d244aee256)
medium
123481FreeBSD : dovecot -- Buffer overflow reading extension header (7862213c-5152-11e9-8b26-a4badb296695)
high
123422FreeBSD : drupal -- Drupal core - Moderately critical - XSS (94d63fd7-508b-11e9-9ba0-4c72b94353b5)
medium
123144FreeBSD : Python -- NULL pointer dereference vulnerability (d74371d2-4fee-11e9-a5cd-1df8a848de3d)
high
123054FreeBSD : Gitlab -- Vulnerability (e0382fde-4bb0-11e9-adcb-001b217b3468)
medium
123053FreeBSD : wordpress -- multiple issues (15ee0e93-4bbb-11e9-9ba0-4c72b94353b5)
high
122989FreeBSD : gitea -- XSS vulnerability (a8ba7358-4b02-11e9-9ba0-4c72b94353b5)
high
122988FreeBSD : Gitlab -- Vulnerability (7ba5a3d0-4b18-11e9-adcb-001b217b3468)
critical
122987FreeBSD : libXdmcp -- insufficient entropy generating session keys (1b6a10e9-4b7b-11e9-9e89-54e1ad3d6335)
medium
122960FreeBSD : PowerDNS -- Insufficient validation in the HTTP remote backend (6001cfc6-9f0f-4fae-9b4f-9b8fae001425)
high
122959FreeBSD : mozilla -- multiple vulnerabilities (05da6b56-3e66-4306-9ea3-89fafe939726)
critical
122936FreeBSD : Rails -- Action View vulnerabilities (1396a74a-4997-11e9-b5f1-83edb3f89ba1)
high
122885FreeBSD : Jupyter notebook -- cross-site inclusion (XSSI) vulnerability (72a6e3be-483a-11e9-92d7-f1590402501e)
high
122884FreeBSD : PuTTY -- security fixes in new release (46e1ece5-48bd-11e9-9c40-080027ac955c)
high
122883FreeBSD : RubyGems -- multiple vulnerabilities (27b12d04-4722-11e9-8b7c-b5e01141761f)
high
122686FreeBSD : OpenSSL -- ChaCha20-Poly1305 nonce vulnerability (e56f2f7c-410e-11e9-b95c-b499baebfeaf)
high
122685FreeBSD : ntp -- Crafted null dereference attack from a trusted source with an authenticated mode 6 packet (c2576e14-36e2-11e9-9eda-206a8a720317)
high
122658FreeBSD : rssh - multiple vulnerabilities (d193aa9f-3f8c-11e9-9a24-6805ca0b38e8)
critical
122657FreeBSD : rt -- XSS via jQuery (416ca0f4-3fe0-11e9-bbdd-6805ca0b3d42)
medium
122631FreeBSD : slixmpp -- improper access control (526d9642-3ae7-11e9-a669-8c164582fbac)
high
122630FreeBSD : Gitlab -- Multiple vulnerabilities (11292460-3f2f-11e9-adcb-001b217b3468)
critical