Web Servers Family for Nessus

Page 1 of 25 1210 total

IDNameSeverity
135180IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.18 / 9.0.x < 9.0.5.4 Privilege Escalation (CVE-2020-4276)Medium
134862Apache Tomcat AJP Connector Request Injection (Ghostcat)High
134220nginx < 1.17.7 Information DisclosureMedium
133845Apache Tomcat < 7.0.100 / 8.5.x < 8.5.51 / 9.x < 9.0.31 Multiple VulnerabilitiesHigh
133696IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.17 / 9.0.x < 9.0.5.3 Command Execution (CVE-2020-4163)Medium
133529IBM WebSphere Application Server Denial of Service (CVE-2019-4720)Medium
133360IBM WebSphere Application Server Virtual Enterprise 7.0.x <= 7.0.0.6 / Virtual Enterprise 8.0.x / 8.5.5.x < 8.5.5.17 / 9.0.x < 9.0.5.1 Information Disclosure (CVE-2019-4505)Medium
133275IBM WebSphere Application Server 9.0.x < 9.0.5.0 Information Disclosure (CVE-2019-4269)Medium
133274IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Cross-Site Request Forgery (CVE-2018-1926)Medium
133273IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Privilege Escalation (CVE-2018-1901)Medium
133272IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Privilege Escalation (CVE-2018-1840)Medium
133271IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Information Disclosure (CVE-2018-1614)Medium
133270IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Remote Code Execution (CVE-2018-1567)High
133146Oracle Fusion Middleware Oracle HTTP Server (Jan 2020 CPU)Medium
132775nginx 0.8.x < 0.8.33 / 0.7.x < 0.7.65 Windows Filename Pseudonyms (CORE-2010-0121)Medium
132726OpenSSL 1.0.2 < 1.0.2u Procedure Overflow VulnerabilityMedium
132725OpenSSL 1.1.1 < 1.1.1e-dev Procedure Overflow VulnerabilityMedium
132419Apache Tomcat 9.0.0.M1 < 9.0.30 Privilege Escalation VulnerabilityMedium
132418Apache Tomcat 8.5.0 < 8.5.50 Privilege Escalation VulnerabilityMedium
132413Apache Tomcat 8.5.0 < 8.5.49 Privilege EscalationMedium
132076IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.17 / 9.0.x < 9.0.5.2 / Liberty < 19.0.0.11 Information Disclosure (CVE-2019-4441)Medium
131733IBM WebSphere Application Server 7.0.x / 8.0.0.x / 8.5.x < 8.5.5.17 / 9.0.0.x < 9.0.5.2 Directory Traversal VulnerabilityMedium
130590Apache Tomcat Installed (Windows)Info
130175Apache Tomcat Local DetectionInfo
129097IBM WebSphere Application Server 7.0.x / 8.0.0.x / 8.5.x < 8.5.5.17 / 9.0.0.x < 9.0.5.2 Information Disclosure (CVE-2019-4477)Medium
128523Oracle GlassFish Server < 3.0.1.22 Multiple VulnerabilitiesMedium
128117OpenSSL 1.1.0 < 1.1.0l Multiple VulnerabilitiesLow
128116OpenSSL 1.1.1 < 1.1.1d Multiple VulnerabilitiesMedium
128115OpenSSL 1.0.2 < 1.0.2t Multiple VulnerabilitiesLow
128065IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Admin Console Directory Traversal Vulnerability (CVE-2018-1770)Medium
128033Apache 2.4.x < 2.4.41 Multiple VulnerabilitiesMedium
127907nginx 1.9.5 < 1.16.1 / 1.17.x < 1.17.3 Multiple VulnerabiltiesHigh
126781Oracle Fusion Middleware Oracle HTTP Server (Jul 2019 CPU)High
126312Apache Tomcat 9.0.0.M1 < 9.0.16 a vulnerabilityMedium
126262Oracle WebLogic Server Deserialization RCE (CVE-2019-2729)Critical
126245Apache Tomcat 9.0.0.M1 < 9.0.20 a vulnerabilityMedium
126125Apache Tomcat 8.5.0 < 8.5.41 a vulnerabilityMedium
126052IBM WebSphere Application Server Remote Code Execution Vulnerability (CVE-2018-1904)High
125642OpenSSL 1.1.0 < 1.1.0k VulnerabilityMedium
125641OpenSSL 1.1.1 < 1.1.1c VulnerabilityMedium
125630IBM WebSphere Application Server Virtual Enterprise 7.0.x / Network Deployment 8.5.x < 8.5.5.16 / Network Deployment 9.0.0.x <= 9.0.0.11 Remote Code Execution Vulnerability (CVE-2019-4279)Critical
125595IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.9 TLS Downgrade Vulnerability (CVE-2018-1719)Medium
125265Oracle WebLogic Server Java Object Deserialization RCE (CVE-2018-3245)High
124566IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.15 Form Login Spoofing Vulnerability (CVE-2018-1695)Medium
124565IBM BigFix Platform 9.5.x < 9.5.12 Multiple VulnerabilitiesHigh
124564IBM BigFix Platform 9.2.x <= 9.2.16 / 9.5.x <= 9.5.11 Information DisclosureMedium
124563IBM BigFix Platform 9.5.x < 9.5.10 Plain Text CredentialsLow
124338Oracle WebLogic WLS9-async Remote Code Execution (remote check)High
124336NGINX Unit HTTP Server DetectionInfo
124335NGINX Unit 0.x > 0.3 / 1.x < 1.7.1 Heap Buffer Overflow (CVE-2019-7401)High

Page 1 of 25 1210 total