Web Servers Family for Nessus

IDNameSeverity
321538nginx 1.31.x < 1.31.2 Use-After-Free Vulnerability
critical
321534nginx 1.13.10 < 1.30.3 / 1.31.x < 1.31.2 Buffer Overflow
high
321310IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 / Liberty 17.0.0.3 < 26.0.0.7 (7276579)
high
321309IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.28 RCE (7276560)
high
321308IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 (7276600)
high
321307IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 (7276597)
high
320860SAP NetWeaver AS Java Reflected XSS (3723655)
medium
320859SAP NetWeaver AS ABAP Memory Corruption (3717897)
critical
320858SAP NetWeaver AS ABAP XML Signature Wrapping in SAML Authentication (3746332)
critical
320857SAP NetWeaver AS Java Directory Traversal (3727078)
critical
320856SAP NetWeaver AS Java Apache Log4j Vulnerability (3726899)
medium
320855SAP NetWeaver AS ABAP Missing Authorization Check (3735546)
high
320142OpenSSL 3.0.0 < 3.0.21 Multiple Vulnerabilities
critical
320141OpenSSL 1.0.2 < 1.0.2zq Multiple Vulnerabilities
high
320140OpenSSL 4.0.0 < 4.0.1 Multiple Vulnerabilities
critical
320139OpenSSL 1.1.1 < 1.1.1zh Multiple Vulnerabilities
high
320138OpenSSL 3.4.0 < 3.4.6 Multiple Vulnerabilities
critical
320136OpenSSL 3.5.0 < 3.5.7 Multiple Vulnerabilities
critical
320135OpenSSL 3.6.0 < 3.6.3 Multiple Vulnerabilities
critical
319665Apache 2.4.x < 2.4.68 Multiple Vulnerabilities
high
318180IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 RCE (7274733)
critical
318169IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 Identity Spoofing (7274740)
critical
318160IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.29 RCE (7274738)
critical
317395IBM HTTP Server 8.5.0.0 < 8.5.5.30 / 9.0.0.0 < 9.0.5.29 Multiple Vulnerabilities (7274065)
critical
316826IBM WebSphere Application Server 8.5.x / 9.x RCE (7274072)
critical
316773nginx 0.6.27 < 1.30.1 ngx_http_rewrite_module Heap Buffer Overflow
critical
316482Grafana Labs < 11.6.14+security-04 / 12.2.0 < 12.2.8+security-04 / 12.3.0 < 12.3.6+security-04 / 12.4.0 < 12.4.3+security-02 / 13.0.0 < 13.0.1+security-01 Multiple Vulnerabilities
high
316002Apache Tomcat 11.0.0.M1 < 11.0.22 multiple vulnerabilities
critical
315541IBM WebSphere Application Server Liberty 22.0.0.11 < 26.0.0.6 (7273425)
medium
315540IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.28 / Liberty 19.0.0.7 < 26.0.0.6 DoS (7273424)
high
314954SAP NetWeaver AS ABAP Code Injection (3735359)
medium
314953SAP NetWeaver AS ABAP OS Command Injection (3730019)
medium
314952SAP NetWeaver AS ABAP SQL Injection (3724838)
critical
314951SAP NetWeaver AS ABAP Reflected XSS (3728690)
medium
314911Open WebUI Web Detection
info
314335Apache Tomcat 10.1.0.M1 < 10.1.55 multiple vulnerabilities
critical
314334Apache Tomcat 9.0.0.M1 < 9.0.118 multiple vulnerabilities
critical
311940Apache 2.4.x < 2.4.67 Multiple Vulnerabilities
critical
309969Oracle HTTP Server (April 2026 CPU)
high
309968Oracle HTTP Server (April 2026 CPU)
high
309854IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.5 Identity Spoofing (7270437)
medium
307013Apache Tomcat 10.1.22 < 10.1.54 multiple vulnerabilities
high
307004Apache Tomcat 9.0.113 < 9.0.116 multiple vulnerabilities
high
307003Apache Tomcat 9.0.92 < 9.0.117 multiple vulnerabilities
high
307002Apache Tomcat 11.0.0.M14 < 11.0.21 multiple vulnerabilities
high
307001Apache Tomcat 10.1.50 < 10.1.53 multiple vulnerabilities
high
306755Apache Tomcat 11.0.15 < 11.0.20 multiple vulnerabilities
critical
306733SAP NetWeaver AS Java Code Injection (3719397)
medium
306732SAP NetWeaver AS ABAP Open Redirect (3692004)
medium
306675nginx 1.1.19 < 1.28.3 / 1.29.x < 1.29.7 Multiple Vulnerabilities in ngx_http_mp4_module
high