FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
62539FreeBSD : phpMyAdmin -- Multiple XSS due to unescaped HTML output in Trigger, Procedure and Event pages and Fetching the version information from a non-SSL site is vulnerable to a MITM attack (ef417da3-1640-11e2-999b-e0cb4e266481)
medium
62490FreeBSD : mozilla -- multiple vulnerabilities (6e5a9afd-12d3-11e2-b47d-c8600054b392)
critical
62489FreeBSD : dns/bind9* -- crash on deliberately constructed combination of records (57a700f9-12c0-11e2-9f86-001d923933b6)
high
62488FreeBSD : chromium -- multiple vulnerabilities (09e83f7f-1326-11e2-afe3-00262d5ed8ee)
critical
62457FreeBSD : chromium -- multiple vulnerabilities (e6161b65-1187-11e2-afe3-00262d5ed8ee)
high
62422FreeBSD : OpenX -- SQL injection vulnerability (dee44ba9-08ab-11e2-a044-d0df9acfd7e5)
high
62341FreeBSD : eperl -- Remote code execution (73efb1b7-07ec-11e2-a391-000c29033c32)
high
62340FreeBSD : chromium -- multiple vulnerabilities (5bae2ab4-0820-11e2-be5f-00262d5ed8ee)
high
62298FreeBSD : ImageMagick and GraphicsMagick -- DoS via specially crafted PNG file (98690c45-0361-11e2-a391-000c29033c32)
medium
62208FreeBSD : php5-sqlite -- open_basedir bypass (ec255bd8-02c6-11e2-92d1-000d601460a4)
medium
62207FreeBSD : php5 -- Denial of Service in php_date_parse_tzfile() (9b2a5e88-02b8-11e2-92d1-000d601460a4)
medium
62194FreeBSD : dns/bind9* -- Several vulnerabilities (53a0ddef-0208-11e2-8afa-0024e830109b)
high
62168FreeBSD : jenkins -- multiple vulnerabilities (d846af5b-00f4-11e2-b6d0-00e0814cab4e)
high
62114FreeBSD : vlc -- arbitrary code execution in Real RTSP and MMS support (62f36dfd-ff56-11e1-8821-001b2134ef46)
high
62105FreeBSD : bacula -- Console ACL Bypass (143f6932-fedb-11e1-ad4a-003067b2972c)
medium
62068FreeBSD : mod_pagespeed -- multiple vulnerabilities (178ba4ea-fd40-11e1-b2ae-001fd0af1a4c)
medium
62054FreeBSD : freeradius -- arbitrary code execution for TLS-based authentication (3bbbe3aa-fbeb-11e1-8bd8-0022156e8794)
medium
62023FreeBSD : emacs -- remote code execution vulnerability (c1e5f35e-f93d-11e1-b07f-00235a5f2c9a)
medium
62022FreeBSD : wordpress -- multiple unspecified privilege escalation bugs (30149157-f926-11e1-95cd-001fd0af1a4c)
high
61782FreeBSD : php5 -- header splitting attack via carriage-return character (918f38cd-f71e-11e1-8bd8-0022156e8794)
medium
61781FreeBSD : moinmoin -- wrong processing of group membership (4f99e2ef-f725-11e1-8bd8-0022156e8794)
medium
61780FreeBSD : moinmoin -- XSS via RST parser (4a8a98ab-f745-11e1-8bd8-0022156e8794)
low
61766FreeBSD : bitcoin -- denial of service (b50913ce-f4a7-11e1-b135-003067b2972c)
medium
61765FreeBSD : mediawiki -- multiple vulnerabilities (7c0fecd6-f42f-11e1-b17b-000c2977ec30)
high
61764FreeBSD : bugzilla -- multiple vulnerabilities (6ad18fe5-f469-11e1-920d-20cf30e32f6d)
medium
61763FreeBSD : wireshark -- denial of service in DRDA dissector (5415f1b3-f33d-11e1-8bd8-0022156e8794)
medium
61762FreeBSD : GNU gatekeeper -- denial of service (342176a8-f464-11e1-8bd8-0022156e8794)
medium
61744FreeBSD : chromium -- multiple vulnerabilities (ee68923d-f2f5-11e1-8014-00262d5ed8ee)
high
61743FreeBSD : coppermine -- Multiple vulnerabilities (6dd5e45c-f084-11e1-8d0f-406186f3d89d)
medium
61742FreeBSD : asterisk -- multiple vulnerabilities (4c53f007-f2ed-11e1-a215-14dae9ebcf89)
high
61741FreeBSD : mozilla -- multiple vulnerabilities (2b8cad90-f289-11e1-a215-14dae9ebcf89)
critical
61740FreeBSD : Java 1.7 -- security manager bypass (16846d1e-f1de-11e1-8bd8-0022156e8794)
critical
61725FreeBSD : fetchmail -- chosen plaintext attack against SSL CBC initialization vectors (18ce9a90-f269-11e1-be53-080027ef73ec) (BEAST)
medium
61679FreeBSD : squidclamav -- XSS in default virus warning pages (ce680f0a-eea6-11e1-8bd8-0022156e8794)
medium
61678FreeBSD : roundcube -- XSS in HTML email messages (c906e0a4-efa6-11e1-8fbf-001b77d09812)
medium
61677FreeBSD : Calligra, KOffice -- input validation failure (aa4d3d73-ef17-11e1-b593-00269ef07d24)
high
61676FreeBSD : inn -- plaintext command injection into encrypted channel (a7975581-ee26-11e1-8bd8-0022156e8794)
medium
61675FreeBSD : squidclamav -- Denial of Service (8defa0f9-ee8a-11e1-8bd8-0022156e8794)
medium
61640FreeBSD : rssh -- configuration restrictions bypass (a4598875-ec91-11e1-8bd8-0022156e8794)
high
61639FreeBSD : jabberd -- domain spoofing in server dialback protocol (4d1d2f6d-ec94-11e1-8bd8-0022156e8794)
medium
61617FreeBSD : rssh -- arbitrary command execution (65b25acc-e63b-11e1-b81c-001b77d09812)
low
61589FreeBSD : libotr -- buffer overflows (c651c898-e90d-11e1-b230-0024e830109b)
medium
61588FreeBSD : Wireshark -- Multiple vulnerabilities (4cdfe875-e8d6-11e1-bea0-002354ed89bc)
high
61587FreeBSD : OpenTTD -- Denial of Service (0f62be39-e8e0-11e1-bea0-002354ed89bc)
medium
61586FreeBSD : databases/postgresql*-server -- multiple vulnerabilities (07234e78-e899-11e1-b38d-0023ae8e59f0)
medium
61566FreeBSD : phpMyAdmin -- Multiple XSS in Table operations, Database structure, Trigger and Visualize GIS data pages (db1d3340-e83b-11e1-999b-e0cb4e266481)
low
61557FreeBSD : typo3 -- Multiple vulernabilities in TYPO3 Core (48bcb4b2-e708-11e1-a59d-000d601460a4)
high
61539FreeBSD : fetchmail -- two vulnerabilities in NTLM authentication (83f9e943-e664-11e1-a66d-080027ef73ec)
medium
61522FreeBSD : Several vulnerabilities found in IcedTea-Web (55b498e2-e56c-11e1-bbd5-001c25e46b1d)
high
61505FreeBSD : chromium -- multiple vulnerabilities (ce84e136-e2f6-11e1-a8ca-00262d5ed8ee)
high