Web Servers Family for Nessus

IDNameSeverity
298967SAP NetWeaver AS ABAP Missing Authorization Check (3674774)
critical
298966SAP NetWeaver AS ABAP XML Signature Wrapping (3697567)
high
298965SAP NetWeaver AS Java CRLF Injection (3673213)
low
298964SAP NetWeaver AS ABAP and S/4HANA Missing Authorization Check (3672622)
medium
298596IBM WebSphere Application Server 8.5.x < 8.5.5.30 / 9.x < 9.0.5.27 (7260217)
medium
297279IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.2 RCE (7258224)
high
297229Oracle APEX Sample Applications (Brookstrut) (CVE-2026-21931)
medium
297228Oracle Application Express (Apex) Web Detection
info
297198Grafana Labs 3.0.0 < 11.6.9+security-01 / 12.0.0 < 12.0.8+security-01 / 12.1.0 < 12.1.5+security-01 / 12.2.0 < 12.2.3+security-01 / 12.3.0 < 12.3.1+security-01 DoS (CVE-2026-21720)
high
297197Grafana Labs 10.2.0 < 11.6.9+security-01 / 12.0.0 < 12.0.8+security-01 / 12.1.0 < 12.1.5+security-01 / 12.2.0 < 12.2.3+security-01 / 12.3.0 < 12.3.1+security-01 Privilege Escalation (CVE-2026-21721)
high
296784OpenSSL 3.3.0 < 3.3.6 Multiple Vulnerabilities
high
296770OpenSSL 3.6.0 < 3.6.1 Multiple Vulnerabilities
high
296769OpenSSL 1.1.1 < 1.1.1ze Multiple Vulnerabilities
high
296768OpenSSL 3.5.0 < 3.5.5 Multiple Vulnerabilities
high
296767OpenSSL 1.0.2 < 1.0.2zn Multiple Vulnerabilities
high
296766OpenSSL 3.4.0 < 3.4.4 Multiple Vulnerabilities
high
296765OpenSSL 3.0.0 < 3.0.19 Multiple Vulnerabilities
high
296604Oracle HTTP Server (January 2026 CPU)
medium
296603Oracle HTTP Server (January 2026 CPU)
medium
288282SAP NetWeaver Command Injection (January 2026)
high
288281SAP NetWeaver AS ABAP Missing Authorization Check (3688703)
high
288280SAP NetWeaver AS Java Sensitive Information Vulnerability (January 2026)
low
281759Nginx Sites Enumeration
info
281618IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7256003)
high
278309SAP NetWeaver AS Java DoS (December 2025)
high
278308SAP NetWeaver AS Missing Authentication (December 2025)
medium
277790IBM WebSphere Application Server 8.5.x < 8.5.5.29 / 9.x < 9.0.5.27 / Liberty 17.0.0.3 < 26.0.0.1 XSS (7254078)
medium
276746Grafana Enterprise SCIM Provisioning Privilege Escalation (CVE-2025-41115)
critical
275454SAP NetWeaver AS ABAP Missing Authorization Check (3643337)
medium
275453SAP NetWeaver AS Java Information Disclosure (3643603)
medium
275445Omnissa Workspace ONE UEM 24.2.x < 24.2.0.36 / 24.6.x < 24.6.0.44 / 24.10.x < 24.10.0.25 (OMSA-2025-0005)
medium
274087IBM WebSphere Application Server 8.5.x < 8.5.5.29 / 9.x < 9.0.5.27 / Liberty 17.0.0.3 < 25.0.0.12 (7250200)
medium
272099IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7249244)
medium
272043ArcGIS Server HTTP Detection
info
271806Apache Tomcat 9.0.40 < 9.0.109 multiple vulnerabilities
high
271696Apache Tomcat 11.0.0.M1 < 11.0.12
high
271695Apache Tomcat 10.1.0.M1 < 10.1.47
high
271694Apache Tomcat 9.0.0.M1 < 9.0.110
high
271693Apache Tomcat 11.0.0.M1 < 11.0.11 multiple vulnerabilities
high
271692Apache Tomcat 10.1.0.M1 < 10.1.45 multiple vulnerabilities
high
271691Apache Tomcat 9.0.0.M11 < 9.0.109 multiple vulnerabilities
high
270697SAP NetWeaver AS ABAP Multiple Vulnerabilities (October 2025)
medium
270696SAP NetWeaver AS Java Insecure Deserialization (October 2025)
critical
270347IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7247893)
high
266319OpenSSL 3.2.0 < 3.2.6 Multiple Vulnerabilities
medium
266318OpenSSL 1.0.2 < 1.0.2zm Vulnerability
high
266298OpenSSL 3.5.0 < 3.5.4 Multiple Vulnerabilities
medium
266297OpenSSL 3.0.0 < 3.0.18 Multiple Vulnerabilities
high
266295OpenSSL 3.4.0 < 3.4.3 Multiple Vulnerabilities
medium
266294OpenSSL 1.1.1 < 1.1.1zd Vulnerability
high