Known vulnerabilities in Red Hat Satellite - page 7

Software CPE: cpe:2.3:a:red_hat:red_hat_satellite:*:*:*:*:*:*:*:*
Total vulnerabilities: 293
Public exploits: 14
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Satellite Red Hat Satellite is affected by 293 known vulnerabilities: 1 critical, 36 high, 112 medium, 144 low Critical High Medium Low

Vulnerabilities (293)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69545 - Incorrect Default Permissions
CVE-2022-41946
CWE-276 Low
No
No
6.12.3, 6.13 23.11.2022 SB2022112335
SB2023010922
SB2023011025
and 42 more
#VU69430 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-25648
CWE-78 High
No
No
- 18.11.2022 SB2022111844
SB2022111849
SB2022051926
and 4 more
#VU68860 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-31163
CWE-22 Medium
No
No
6.11.4, 6.13 31.10.2022 SB2022103147
SB2022103161
SB2022072942
and 6 more
#VU68307 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-42889
CWE-94 High
Available
Exploited
6.12.1, 6.13 14.10.2022 SB2022101405
SB2022102709
SB2022110306
and 91 more
#VU66704 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-32209
CWE-79 Low
No
No
- 23.08.2022 SB2022082304
SB2022082309
SB2022082429
and 4 more
#VU64905 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-34265
CWE-89 High
Available
No
- 04.07.2022 SB2022070425
SB2022070438
SB2022080147
and 8 more
#VU64862 - Improper input validation
CVE-2022-30122
CWE-20 Medium
No
No
6.11.4 02.07.2022 SB2022070222
SB2022070430
SB2022072530
and 8 more
#VU64190 - Incorrect Regular Expression
CVE-2022-24836
CWE-185 Low
No
No
- 12.06.2022 SB2022061205
SB2022061209
SB2022111849
and 11 more
#VU63415 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-29970
CWE-22 Medium
No
No
- 19.05.2022 SB2022051903
SB2022051911
SB2022061573
and 7 more
#VU63127 - Resource exhaustion
CVE-2021-37136
CWE-400 Medium
No
No
- 12.05.2022 SB2021101948
SB2022051235
SB2022060838
and 36 more
#VU62794 - Unprotected Transport of Credentials
CVE-2021-27023
CWE-523 Medium
No
No
6.10.5 04.05.2022 SB2022050414
SB2022050430
SB2022060135
and 5 more
#VU62793 - Resource Management Errors
CVE-2021-27025
CWE-399 Low
No
No
6.10.5 04.05.2022 SB2022050414
SB2022050430
SB2022060135
and 5 more
#VU61248 - Improper Authentication
CVE-2021-4142
CWE-287 Medium
No
No
6.10.3 10.03.2022 SB2022031037
#VU60197 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22818
CWE-79 Medium
Available
No
- 01.02.2022 SB2022020110
SB2022041954
SB2022020334
and 12 more
#VU59924 - Improper input validation
CVE-2021-37137
CWE-20 Medium
No
No
- 23.01.2022 SB2022012310
SB2022012745
SB2022012753
and 43 more
#VU51835 - Cleartext Storage of Sensitive Information
CVE-2021-21290
CWE-312 Low
No
No
6.10.2 01.04.2021 SB2021020813
SB2021040626
SB2021050706
and 42 more
#VU28692 - Out-of-bounds read
CVE-2019-2962
CWE-125 Low
No
No
- 05.06.2020 SB2019101537
SB2019101538
SB2019121502
and 26 more
#VU28695 - Out-of-bounds read
CVE-2019-2964
CWE-125 Low
No
No
- 05.06.2020 SB2019101537
SB2019101538
SB2019121502
and 27 more
#VU28702 - Out-of-bounds read
CVE-2019-2945
CWE-125 Low
No
No
- 05.06.2020 SB2019101537
SB2019101538
SB2019121502
and 27 more
#VU20844 - Protection Mechanism Failure
CVE-2019-10086
CWE-693 Low
No
No
- 04.09.2019 SB2019090405
SB2019090406
SB2019121902
and 112 more


Showing elements 121 - 140 out of 293