Pass GitLab 14.7.x < 14.7.7 / 14.8.x < 14.8.5 / 14.9.x < 14.8.2 Default Password CVE-2022-1162 18 Apr 2022 9.8 (v3) Critical Pass PHP 5.6.x < 5.6.21 Multiple Vulnerabilities CVE-2016-3074 CVE-2016-4537 CVE-2016-4538 CVE-2016-4539 CVE-2016-4540 CVE-2016-4541 CVE-2016-4542 CVE-2016-4543 CVE-2016-454405 May 2016 9.8 (v3) Critical Pass PHP 7.0.x < 7.0.6 Multiple Vulnerabilities CVE-2016-3074 CVE-2016-3078 CVE-2016-4537 CVE-2016-4538 CVE-2016-4539 CVE-2016-4540 CVE-2016-4541 CVE-2016-4542 CVE-2016-4543 CVE-2016-454405 May 2016 9.8 (v3) Critical Pass Citrix SD-WAN Cookie Command Injection CVE-2017-6316 25 Jan 2019 9.8 (v3) Critical Pass Advantech WebAccess webvrpcs.exe IOCTL 70022 Stack Overflow CVE-2018-18999 21 Dec 2018 7.3 (v3) High Pass Oracle iPlanet Web Server 7.0.x < 7.0.27 NSS Unspecified Vulnerability (January 2018 CPU) CVE-2015-7501 CVE-2015-7940 CVE-2016-0635 CVE-2016-1182 CVE-2016-2107 CVE-2016-2179 CVE-2017-3732 CVE-2017-5645 CVE-2017-9798 CVE-2017-10068 CVE-2017-10262 CVE-2017-10273 CVE-2017-10352 CVE-2017-12617 CVE-2018-2561 CVE-2018-2564 CVE-2018-2584 CVE-2018-2594 CVE-2018-2595 CVE-2018-2596 CVE-2018-2601 CVE-2018-2610 CVE-2018-2625 CVE-2018-2711 CVE-2018-2713 CVE-2018-2715 CVE-2018-273325 Jan 2018 9.8 (v3) Critical Pass ManageEngine Firewall Analyzer < 12.0 Multiple Vulnerabilities 13 Apr 2016 6.5 (v2) Medium Pass NETGEAR Multiple Model PHP Remote Command Injection CVE-2016-1555 22 May 2017 9.8 (v3) Critical Pass Cisco IOS Cluster Management Protocol Telnet Option Handling RCE (cisco-sa-20170317-cmp) (destructive check)CVE-2017-3881 11 Oct 2017 9.8 (v3) Critical Pass VMware ESX / ESXi NFC and Third-Party Libraries Multiple Vulnerabilities (VMSA-2013-0003) (remote check)CVE-2012-1531 CVE-2012-1532 CVE-2012-1533 CVE-2012-2110 CVE-2012-3143 CVE-2012-3159 CVE-2012-3216 CVE-2012-4416 CVE-2012-5067 CVE-2012-5068 CVE-2012-5069 CVE-2012-5070 CVE-2012-5071 CVE-2012-5072 CVE-2012-5073 CVE-2012-5074 CVE-2012-5075 CVE-2012-5076 CVE-2012-5077 CVE-2012-5078 CVE-2012-5079 CVE-2012-5080 CVE-2012-5081 CVE-2012-5082 CVE-2012-5083 CVE-2012-5084 CVE-2012-5085 CVE-2012-5086 CVE-2012-5087 CVE-2012-5088 CVE-2012-5089 CVE-2013-165904 Mar 2016 9.8 (v3) Critical Pass VMware ESX / ESXi Multiple Vulnerabilities (VMSA-2013-0012) (remote check) CVE-2013-1500 CVE-2013-1571 CVE-2013-2400 CVE-2013-2407 CVE-2013-2412 CVE-2013-2437 CVE-2013-2442 CVE-2013-2443 CVE-2013-2444 CVE-2013-2445 CVE-2013-2446 CVE-2013-2447 CVE-2013-2448 CVE-2013-2449 CVE-2013-2450 CVE-2013-2451 CVE-2013-2452 CVE-2013-2453 CVE-2013-2454 CVE-2013-2455 CVE-2013-2456 CVE-2013-2457 CVE-2013-2458 CVE-2013-2459 CVE-2013-2460 CVE-2013-2461 CVE-2013-2462 CVE-2013-2463 CVE-2013-2464 CVE-2013-2465 CVE-2013-2466 CVE-2013-2467 CVE-2013-2468 CVE-2013-2469 CVE-2013-2470 CVE-2013-2471 CVE-2013-2472 CVE-2013-2473 CVE-2013-3743 CVE-2013-3744 CVE-2013-597004 Mar 2016 10 (v2) Critical Pass IBM Endpoint Manager Mobile Device Management Component Unauthenticated Remote Code Execution (swg21691701)CVE-2014-6140 20 Jan 2015 9.3 (v2) High Pass Cisco Prime Data Center Network Manager < 7.1(1) Directory Traversal Vulnerability CVE-2015-0666 13 Apr 2015 7.5 (v3) High Pass MySQL Enterprise Monitor < 2.3.14 Apache Struts Multiple Vulnerabilities CVE-2013-2251 CVE-2013-4316 08 May 2015 10 (v2) Critical Pass Apache Tomcat / JBoss EJBInvokerServlet / JMXInvokerServlet Multiple Vulnerabilities CVE-2007-1036 CVE-2012-0874 CVE-2013-4810 14 Oct 2013 10 (v2) Critical Pass VMware Security Updates for vCenter Server (VMSA-2013-0012) CVE-2013-1500 CVE-2013-1571 CVE-2013-2407 CVE-2013-2412 CVE-2013-2437 CVE-2013-2442 CVE-2013-2443 CVE-2013-2444 CVE-2013-2445 CVE-2013-2446 CVE-2013-2447 CVE-2013-2448 CVE-2013-2450 CVE-2013-2451 CVE-2013-2452 CVE-2013-2453 CVE-2013-2454 CVE-2013-2455 CVE-2013-2456 CVE-2013-2457 CVE-2013-2459 CVE-2013-2461 CVE-2013-2463 CVE-2013-2464 CVE-2013-2465 CVE-2013-2466 CVE-2013-2468 CVE-2013-2469 CVE-2013-2470 CVE-2013-2471 CVE-2013-2472 CVE-2013-2473 CVE-2013-3743 CVE-2013-597125 Oct 2013 10 (v2) Critical Pass Apache PHP-CGI Remote Code Execution CVE-2012-1823 CVE-2012-2311 CVE-2012-2335 CVE-2012-2336 01 Nov 2013 8.8 (v3) High Pass IBM Domino 9.x < 9.0.1 Multiple Vulnerabilities (uncredentialed check) CVE-2012-1541 CVE-2012-3213 CVE-2012-3342 CVE-2013-0351 CVE-2013-0401 CVE-2013-0402 CVE-2013-0409 CVE-2013-0419 CVE-2013-0423 CVE-2013-0424 CVE-2013-0425 CVE-2013-0426 CVE-2013-0427 CVE-2013-0428 CVE-2013-0429 CVE-2013-0430 CVE-2013-0431 CVE-2013-0432 CVE-2013-0433 CVE-2013-0434 CVE-2013-0435 CVE-2013-0437 CVE-2013-0438 CVE-2013-0440 CVE-2013-0441 CVE-2013-0442 CVE-2013-0443 CVE-2013-0444 CVE-2013-0445 CVE-2013-0446 CVE-2013-0448 CVE-2013-0449 CVE-2013-0450 CVE-2013-0809 CVE-2013-1473 CVE-2013-1475 CVE-2013-1476 CVE-2013-1478 CVE-2013-1479 CVE-2013-1480 CVE-2013-1481 CVE-2013-1488 CVE-2013-1489 CVE-2013-1491 CVE-2013-1493 CVE-2013-1500 CVE-2013-1518 CVE-2013-1537 CVE-2013-1540 CVE-2013-1557 CVE-2013-1558 CVE-2013-1561 CVE-2013-1563 CVE-2013-1564 CVE-2013-1569 CVE-2013-1571 CVE-2013-2383 CVE-2013-2384 CVE-2013-2394 CVE-2013-2400 CVE-2013-2407 CVE-2013-2412 CVE-2013-2414 CVE-2013-2415 CVE-2013-2416 CVE-2013-2417 CVE-2013-2418 CVE-2013-2419 CVE-2013-2420 CVE-2013-2421 CVE-2013-2422 CVE-2013-2423 CVE-2013-2424 CVE-2013-2425 CVE-2013-2426 CVE-2013-2427 CVE-2013-2428 CVE-2013-2429 CVE-2013-2430 CVE-2013-2431 CVE-2013-2432 CVE-2013-2433 CVE-2013-2434 CVE-2013-2435 CVE-2013-2436 CVE-2013-2437 CVE-2013-2438 CVE-2013-2439 CVE-2013-2440 CVE-2013-2442 CVE-2013-2443 CVE-2013-2444 CVE-2013-2445 CVE-2013-2446 CVE-2013-2447 CVE-2013-2448 CVE-2013-2449 CVE-2013-2450 CVE-2013-2451 CVE-2013-2452 CVE-2013-2453 CVE-2013-2454 CVE-2013-2455 CVE-2013-2456 CVE-2013-2457 CVE-2013-2458 CVE-2013-2459 CVE-2013-2460 CVE-2013-2461 CVE-2013-2462 CVE-2013-2463 CVE-2013-2464 CVE-2013-2465 CVE-2013-2466 CVE-2013-2467 CVE-2013-2468 CVE-2013-2469 CVE-2013-2470 CVE-2013-2471 CVE-2013-2472 CVE-2013-2473 CVE-2013-3006 CVE-2013-3007 CVE-2013-3008 CVE-2013-3009 CVE-2013-3010 CVE-2013-3011 CVE-2013-3012 CVE-2013-3743 CVE-2013-3744 CVE-2013-4002 CVE-2013-4063 CVE-2013-4064 CVE-2013-406508 Jan 2014 10 (v2) Critical Pass QNAP QTS/QES/QuTS hero - Web Detection 29 Nov 2021 None Pass ManageEngine ADAudit Plus Detection 29 Nov 2021 None Pass Elasticsearch 'source' Parameter RCE CVE-2014-3120 17 Jul 2014 6.8 (v2) Medium Pass Apache Archiva 1.2.x <= 1.2.2 / 1.3.x <= 1.3.6 Multiple Vulnerabilities CVE-2013-2187 CVE-2013-2251 29 Apr 2014 9.3 (v2) High Pass Vulnerability in TLS Could Allow Information Disclosure (2655992) (uncredentialed check) CVE-2012-1870 18 Jul 2012 5.3 (v3) Medium Pass Plesk Panel Apache Arbitrary PHP Code Injection CVE-2012-1823 CVE-2013-4878 07 Jun 2013 7.5 (v2) High Pass Exim string_format Function Remote Overflow CVE-2010-4344 15 Dec 2010 8.8 (v3) High Pass Apache Struts 2 'action:' Parameter Arbitrary Remote Command Execution CVE-2013-2251 19 Jul 2013 10 (v3) Critical Pass HP iNode Management Center Buffer Overflow (HPSB3C02687) (remote check) CVE-2011-1867 19 Aug 2011 10 (v2) Critical Pass Adobe ColdFusion 'locale' Parameter Directory Traversal CVE-2010-2861 16 Aug 2010 7.5 (v2) High Pass HP OpenView Network Node Manager Multiple Scripts Remote Command Execution CVE-2005-2773 01 Sep 2005 7.5 (v2) High Pass phpMyAdmin setup.php save Action Arbitrary PHP Code Injection (PMASA-2009-3) CVE-2009-1151 16 Apr 2009 7.5 (v2) High Pass Citrix SD-WAN Appliance < 10.2.3 Unauthenticated Blind SQL Injection CVE-2019-12989 CVE-2019-12991 03 Jul 2019 9.8 (v3) Critical Pass Cisco Small Business RV132W and RV134W Remote Code Execution (cisco-sa-20180207-rv13x) CVE-2018-0125 10 Oct 2019 9.8 (v3) Critical Pass Mac OS X 10.7.x < 10.7.5 Multiple Vulnerabilities (BEAST) CVE-2011-3026 CVE-2011-3048 CVE-2011-3368 CVE-2011-3389 CVE-2011-3607 CVE-2011-4313 CVE-2011-4317 CVE-2011-4599 CVE-2012-0021 CVE-2012-0031 CVE-2012-0053 CVE-2012-0643 CVE-2012-0652 CVE-2012-0668 CVE-2012-0670 CVE-2012-0671 CVE-2012-0831 CVE-2012-1172 CVE-2012-1173 CVE-2012-1667 CVE-2012-1823 CVE-2012-2143 CVE-2012-2311 CVE-2012-2386 CVE-2012-2688 CVE-2012-3716 CVE-2012-3719 CVE-2012-3721 CVE-2012-3722 CVE-2012-372320 Sep 2012 10 (v2) Critical Pass Mac OS X 10.8.x < 10.8.2 Multiple Vulnerabilities CVE-2011-4313 CVE-2012-0831 CVE-2012-1172 CVE-2012-1667 CVE-2012-1823 CVE-2012-2143 CVE-2012-2311 CVE-2012-2386 CVE-2012-2688 CVE-2012-3718 CVE-2012-372020 Sep 2012 10 (v2) Critical Pass Cisco IOS Cluster Management Protocol Telnet Option Handling RCE (cisco-sa-20170317-cmp) CVE-2017-3881 27 Mar 2017 9.8 (v3) Critical Pass PHP 7.4.x < 7.4.0 Multiple Vulnerabilities. CVE-2019-11041 CVE-2019-11042 CVE-2019-11043 06 Dec 2019 9.8 (v3) Critical Pass Oracle Solaris PAM parse_user_name() buffer overflow (CVE-2020-14871) CVE-2020-14871 11 Nov 2020 10 (v3) Critical Pass PHP 5.5.x < 5.5.36 Multiple Vulnerabilities CVE-2013-7456 CVE-2016-4343 CVE-2016-5093 CVE-2016-5094 CVE-2016-5096 02 Jun 2016 8.6 (v3) High Pass PHP 5.6.x < 5.6.22 Multiple Vulnerabilities CVE-2013-7456 CVE-2016-5093 CVE-2016-5094 CVE-2016-5096 02 Jun 2016 8.6 (v3) High Pass HP LaserJet Printers Unspecified Denial of Service (HPSBPI02938) CVE-2013-6193 17 Dec 2013 5 (v2) Medium Pass IPMI Versions Supported 21 Jan 2014 None Pass StruxureWare SCADA Expert ClearSCADA < 2013 R2 Remote DoS CVE-2013-6142 29 Jan 2014 4.3 (v2) Medium Pass PHP 7.0.x < 7.0.7 Multiple Vulnerabilities CVE-2013-7456 CVE-2016-5093 02 Jun 2016 8.6 (v3) High Pass Apache Struts 2 REST Plugin OGNL Expression Handling RCE CVE-2016-4438 24 Jun 2016 9.8 (v3) Critical Pass PHP 5.5.x < 5.5.37 Multiple Vulnerabilities CVE-2015-8874 CVE-2016-5766 CVE-2016-5767 CVE-2016-5768 CVE-2016-5769 CVE-2016-5770 CVE-2016-5771 CVE-2016-5772 CVE-2016-577301 Jul 2016 9.8 (v3) Critical Pass PHP 7.0.x < 7.0.8 Multiple Vulnerabilities CVE-2016-4473 CVE-2016-5766 CVE-2016-5767 CVE-2016-5768 CVE-2016-5769 CVE-2016-5770 CVE-2016-5771 CVE-2016-5772 CVE-2016-577301 Jul 2016 9.8 (v3) Critical Pass Default Password (ucspe) for 'ucspe' Account 06 Jul 2016 9.8 (v3) Critical Pass HPE LoadRunner Shared Memory Name Construction RCE CVE-2016-4359 07 Jul 2016 9.8 (v3) Critical Pass Tenable Nessus 6.x < 6.8 Multiple Vulnerabilities CVE-2016-0718 CVE-2016-1000028 CVE-2016-1000029 20 Jul 2016 9.8 (v3) Critical Pass VMware vCenter Server 6.5 / 6.7 / 7.0 Multiple Vulnerabilities (VMSA-2021-0010) CVE-2021-21985 CVE-2021-21986 25 May 2021 9.8 (v3) Critical Pass Apache Log4Shell RCE detection via callback correlation (Direct Check SMB) CVE-2021-44228 21 Dec 2021 10 (v3) Critical Pass HTTP_PROXY Environment Variable Namespace Collision Vulnerability (httpoxy) CVE-2016-5385 CVE-2016-5386 CVE-2016-5387 CVE-2016-5388 CVE-2016-1000109 CVE-2016-1000110 25 Jul 2016 8.1 (v3) High Pass PHP 5.6.x < 5.6.24 Multiple Vulnerabilities (httpoxy) CVE-2016-5385 CVE-2016-5399 CVE-2016-6207 CVE-2016-6289 CVE-2016-6290 CVE-2016-6291 CVE-2016-6292 CVE-2016-6293 CVE-2016-6294 CVE-2016-6295 CVE-2016-6296 CVE-2016-629726 Jul 2016 9.8 (v3) Critical Pass PHP 7.0.x < 7.0.9 Multiple Vulnerabilities (httpoxy) CVE-2016-5385 CVE-2016-5399 CVE-2016-6207 CVE-2016-6289 CVE-2016-6290 CVE-2016-6291 CVE-2016-6292 CVE-2016-6293 CVE-2016-6294 CVE-2016-6295 CVE-2016-6296 CVE-2016-629726 Jul 2016 9.8 (v3) Critical Pass Oracle WebLogic Server Java Object Deserialization RCE (July 2016 CPU) CVE-2016-3510 28 Jul 2016 9.8 (v3) Critical Pass Pgbouncer 1.6 Invalid User Authentication Bypass CVE-2015-6817 17 Aug 2016 8.1 (v3) High Pass PHP 7.0.x < 7.0.10 Multiple Vulnerabilities CVE-2016-7124 CVE-2016-7125 CVE-2016-7126 CVE-2016-7127 CVE-2016-7128 CVE-2016-7129 CVE-2016-7130 CVE-2016-7131 CVE-2016-7132 CVE-2016-7133 CVE-2016-713423 Aug 2016 9.8 (v3) Critical Pass Cisco Firepower Threat Defense Software Web Services Interface Multiple Vulnerabilities (cisco-sa-asaftd-xss-multiple-FCB3vPZe)CVE-2020-3580 CVE-2020-3581 CVE-2020-3582 CVE-2020-3583 24 Jun 2021 6.1 (v3) Medium Pass Plex Media Server < 1.25.0.5282 Privilege Escalation CVE-2021-42835 29 Dec 2021 7 (v3) High Pass Python Information Disclosure in PyDoc (CVE-2021-3426) CVE-2021-3426 27 Aug 2021 5.7 (v3) Medium Pass Cisco IOS Software IKEv2 AutoReconnect Feature DoS (cisco-sa-ikev2-ebFrwMPr) CVE-2021-1620 30 Nov 2021 7.7 (v3) High Pass Liferay Portal 7.3.2 < 7.3.6 XSS CVE-2021-29045 30 Nov 2021 6.1 (v3) Medium Pass Cisco IOS XE Software IKEv2 AutoReconnect Feature DoS (cisco-sa-ikev2-ebFrwMPr) CVE-2021-1620 30 Nov 2021 7.7 (v3) High Pass Wind River VxWorks < 7 Build 21.03 DoS CVE-2021-29997 30 Nov 2021 5.3 (v3) Medium Pass Apache Struts CVE-2018-11776 Results With No Namespace Possible Remote Code Execution (S2-057) CVE-2018-11776 22 Aug 2018 8.1 (v3) High Pass Jenkins Plugins Multiple Vulnerabilities (Jenkins Security Advisory 2021-03-30) CVE-2021-21628 CVE-2021-21629 CVE-2021-21630 CVE-2021-21631 CVE-2021-21632 CVE-2021-21633 CVE-2021-21634 CVE-2021-21635 CVE-2021-21636 CVE-2021-21637 CVE-2021-2163830 Nov 2021 8.8 (v3) High Pass Teradata Database Detection 05 Dec 2019 None Pass Apache Solr 8.1.1, 8.2.0 Remote JMX RMI Deserialization Vulnerability CVE-2019-12409 19 Dec 2019 9.8 (v3) Critical Pass Xerox Printer SNMP Detection 16 Jan 2020 None Pass Palo Alto Expedition Web Detection 02 Jan 2020 None Pass Trend Micro OfficeScan Directory Traversal Vulnerability (000151730) CVE-2019-18187 28 Jan 2020 7.5 (v3) High Pass NetApp SANtricity Web Services Proxy Detection 06 Jul 2018 None Pass RedLion Crimson Protocol Detection 17 Jul 2018 None Pass ASUSTOR Data Master (ADM) Detection 24 Jul 2018 None Pass Juniper Junos OS Vulnerability (JSA11242) CVE-2021-31377 13 Oct 2021 5.5 (v3) Medium Pass Juniper Junos OS Vulnerability (JSA11224) CVE-2021-31362 13 Oct 2021 6.5 (v3) Medium Pass Juniper Junos OS Vulnerability (JSA11254) CVE-2021-31386 13 Oct 2021 5.9 (v3) Medium Pass Juniper Junos OS Vulnerability (JSA11219) CVE-2021-31354 13 Oct 2021 8.8 (v3) High Pass Juniper Junos OS Vulnerability (JSA11241) CVE-2021-31376 13 Oct 2021 7.5 (v3) High Pass Juniper Junos OS Vulnerability (JSA11223) CVE-2021-31361 13 Oct 2021 5.3 (v3) Medium Pass SolarWinds Orion Platform < 2020.2.1 XSS CVE-2020-13169 17 Dec 2020 9 (v3) Critical Pass Oracle WebLogic Server 10.3.6.0 / 12.1.3.0 / 12.2.1.3 Java Object Deserialization RCE (CVE-2018-3191) CVE-2018-3191 25 Feb 2019 9.8 (v3) Critical Pass SolarWinds Orion Platform < 2020.2.5 Multiple Vulnerabilities CVE-2020-35856 CVE-2021-3109 26 Mar 2021 8.8 (v3) High Pass Pulse Connect Secure < 9.1R12.1 DoS (SA44899) CVE-2021-22965 27 Oct 2021 7.5 (v3) High Pass Apache Tomcat 9.x < 9.0.40 Information Disclosure CVE-2020-17527 CVE-2021-24122 10 Dec 2020 7.5 (v3) High Pass PostgreSQL 9.5.x < 9.5.24 / 9.6.x < 9.6.20 / 10.x < 10.15 / 11.x < 11.10 / 12.x < 12.5 / 13.x < 13.1 Multiple VCVE-2020-25694 CVE-2020-25695 CVE-2020-25696ulnerabilities 10 Dec 2020 8.8 (v3) High Pass Dell iDRAC XSS (DSA-2020-268) CVE-2020-26198 06 Jan 2021 6.1 (v3) Medium Pass Oracle Primavera P6 Enterprise Project Portfolio Management (Jan 2021 CPU) CVE-2020-5421 22 Jan 2021 6.5 (v3) Medium Pass Atlassian JIRA < 8.5.11 / 8.6.x < 8.13.3 / 8.14.x < 8.14.1 Information Disclosure (JRASERVER-72000) CVE-2020-29451 19 Feb 2021 4.3 (v3) Medium Pass Atlassian JIRA < 8.13.2 / 8.14.x < 8.14.1 Information Disclosure (JRASERVER-71950) CVE-2020-36235 19 Feb 2021 5.3 (v3) Medium Pass Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers RCE (cisco-sa-sb-rv34x-rce-8bfG2h6b)CVE-2021-1413 CVE-2021-1414 CVE-2021-1415 16 Apr 2021 6.3 (v3) Medium Pass Atlassian Jira < 8.5.11 / 8.13.3 / 8.15.0 Arbitrary File Read (JRASERVER-72014) CVE-2020-29453 25 Feb 2021 5.3 (v3) Medium Pass Zabbix 5.4.x < 5.4.9 Multiple Vulnerabilities CVE-2022-23131 CVE-2022-23132 CVE-2022-23133 CVE-2022-23134 28 Feb 2022 9.8 (v3) Critical Pass DNN (DotNetNuke) < 8.0.4 Multiple Vulnerabilities 29 Aug 2016 4.3 (v3) Medium Pass Centreon GetXmlTree.php 'sid' Parameter SQLi CVE-2015-1560 31 Aug 2016 7.3 (v3) High Pass PHP 5.6.x < 5.6.26 Multiple Vulnerabilities CVE-2016-7411 CVE-2016-7412 CVE-2016-7413 CVE-2016-7414 CVE-2016-7416 CVE-2016-7417 CVE-2016-7418 22 Sep 2016 9.8 (v3) Critical Pass ManageEngine ADManager Plus < 7111 RCE CVE-2021-37539 CVE-2021-37741 CVE-2021-37761 CVE-2021-37762 CVE-2021-37918 CVE-2021-37922 CVE-2021-37926 CVE-2021-37928 CVE-2021-37929 CVE-2021-37930 CVE-2021-3793109 Sep 2021 9.8 (v3) Critical Pass VMware vCenter Server 6.5 / 6.7 Multiple Vulnerabilities (VMSA-2021-0027) CVE-2021-21980 CVE-2021-22049 02 Dec 2021 9.8 (v3) Critical Pass ManageEngine ServiceDesk Plus < 11.3 Build 11306 / ManageEngine ServiceDesk Plus MSP < 10.5 Build 10530 RCECVE-2021-44077 06 Dec 2021 9.8 (v3) Critical Pass PHP 7.0.x < 7.0.11 Multiple Vulnerabilities CVE-2016-7412 CVE-2016-7413 CVE-2016-7414 CVE-2016-7416 CVE-2016-7417 CVE-2016-7418 22 Sep 2016 9.8 (v3) Critical Pass PHP 5.6.x < 5.6.27 Multiple Vulnerabilities 18 Oct 2016 9.8 (v3) Critical Pass D-Link DIR Router Web Interface Detection 11 Sep 2017 None Noise Web Application Cookies Are Expired 07 Jun 2017 None Pass Grandstream Networking Solutions Device Web Detection 28 Mar 2019 None Pass Sophos XG Firewall Detection 04 Jan 2017 None Pass Checkpoint Gaia Portal WebUI Detection 22 Nov 2017 None Pass CA Unified Management Portal (UMP) Detection 09 Dec 2016 None Pass Micro Focus Network Automation Detection 25 Mar 2016 None Pass McAfee ESM SIEM Detection 07 Oct 2015 None Pass iniNet SpiderControl SCADA Web Server Detection 27 Jan 2016 None Pass Oracle Real User Experience Insight Detection 26 Jan 2015 None Pass Visualware MyConnection Server Web Default Credentials 02 Apr 2015 7.5 (v2) High 47
RELAYTO Penetration Test Results Page 46 Page 48