Known vulnerabilities in firewalld-prometheus-config - page 4

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:firewalld-prometheus-config:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 76
Public exploits: 7
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting firewalld-prometheus-config firewalld-prometheus-config is affected by 76 known vulnerabilities: 9 high, 34 medium, 33 low Critical High Medium Low

Vulnerabilities (76)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
0.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
0.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
0.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
0.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU78913 - Improper Certificate Validation
CVE-2023-29409
CWE-295 Medium
No
No
0.1-150000.3.50.3 03.08.2023 SB2023080320
SB2023080321
SB2023080370
and 98 more
#VU71567 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23552
CWE-79 Low
No
No
0.1-159000.6.33.1 26.01.2023 SB2023012632
SB2023032032
SB2023032033
and 10 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
0.1-159000.6.33.1 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
0.1-159000.6.33.1 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU64430 - Incorrect Authorization
CVE-2021-41244
CWE-863 Medium
No
No
0.1-159000.6.33.1 16.06.2022 SB2021111513
SB2022062026
SB2022102094
and 5 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
0.1-150000.3.41.2, 0.1-150100.4.9.2, 0.1-159000.6.30.4 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-41174
CWE-79 Low
Available
No
0.1-159000.6.33.1 03.11.2021 SB2021110312
SB2021110517
SB2022062026
and 4 more
#VU57422 - Information Exposure Through an Error Message
CVE-2021-3620
CWE-209 Low
No
No
0.1-159000.6.33.1 19.10.2021 SB2021101903
SB2021101904
SB2021101905
and 10 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
0.1-159000.6.33.1 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
0.1-159000.6.33.1 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more
#VU54626 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3583
CWE-94 High
No
No
0.1-159000.6.33.1 08.07.2021 SB2021070822
SB2021070823
SB2021071517
and 12 more
#VU52984 - Information Exposure Through Log Files
CVE-2021-3447
CWE-532 Low
No
No
0.1-159000.6.33.1 10.05.2021 SB2021040180
SB2021051001
SB2021072616
and 13 more


Showing elements 61 - 80 out of 76