Known vulnerabilities in mgrctl - page 3

Vendor: SUSE
Software: mgrctl
Software CPE: cpe:2.3:o:suse:mgrctl:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 58
Public exploits: 8
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting mgrctl mgrctl is affected by 58 known vulnerabilities: 6 high, 25 medium, 27 low Critical High Medium Low

Vulnerabilities (58)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU104016 - Exposure of sensitive information to an unauthorized actor
CVE-2024-22037
CWE-200 Low
No
No
0.1.26-150500.3.12.2, 0.1.28-1.14.1, 0.1.28-1.16.1, 0.1.28-2.6.2, 0.1.28-2.16.1, 0.1.28-2.16.2, 0.1.28-150000.1.16.1 17.02.2025 SB2025021737
SB2025021738
SB2025021739
and 5 more
#VU101894 - Insufficient Technical Documentation
CVE-2024-51744
CWE-1059 Low
No
No
0.1.28-1.16.1, 0.1.28-150000.1.16.1 23.12.2024 SB2024122304
SB2024122309
SB20241230139
and 21 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Available
No
0.1.28-1.16.1, 0.1.28-150000.1.16.1 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU99259 - Improper Access Control
CVE-2024-8118
CWE-284 Low
No
No
0.1.28-1.16.1, 0.1.28-150000.1.16.1 22.10.2024 SB20241022375
SB2025021467
SB2025021742
and 1 more
#VU96048 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-6837
CWE-79 Medium
No
No
0.1.28-1.16.1, 0.1.28-150000.1.16.1 15.08.2024 SB2024081534
SB2025021467
SB2025021742
and 1 more
#VU94616 - Information Exposure Through Log Files
CVE-2024-6104
CWE-532 Low
No
No
0.1.21-1.8.1, 0.1.21-150000.1.8.2 19.07.2024 SB2024071927
SB2024071929
SB2024071930
and 83 more
#VU89210 - Incorrect Authorization
CVE-2023-6152
CWE-863 Low
No
No
0.1.7-3.8.1, 0.1.7-159000.3.8.1, 0.1.28-1.16.1, 0.1.28-150000.1.16.1 07.05.2024 SB2024050715
SB2024050717
SB2024050718
and 8 more
#VU87845 - Improper Authorization
CVE-2024-1313
CWE-285 Medium
No
No
0.1.9-3.11.4, 0.1.9-159000.3.11.5 27.03.2024 SB2024032711
SB2024043089
SB2024050720
and 10 more
#VU85621 - Missing release of memory after effective lifetime
CVE-2024-0690
CWE-401 Low
No
No
0.1.7-159000.3.8.1 19.01.2024 SB2024011931
SB2024011933
SB2024011934
and 11 more
#VU84381 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-5764
CWE-94 Medium
No
No
0.1.7-159000.3.8.1 13.12.2023 SB2023121315
SB2023121316
SB2023121317
and 16 more
#VU83546 - Resource exhaustion
CVE-2023-45142
CWE-400 Medium
No
No
0.1.21-1.8.1, 0.1.21-150000.1.8.2 29.11.2023 SB2023112912
SB2023112913
SB2023112949
and 54 more
#VU79294 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-3978
CWE-79 Low
No
No
0.1.23-1.11.1, 0.1.23-1.13.2, 0.1.23-150000.1.13.3 09.08.2023 SB2023080938
SB2023081013
SB20230821167
and 54 more
#VU77652 - Improper Authentication
CVE-2023-3128
CWE-287 High
No
No
0.1.28-1.16.1, 0.1.28-150000.1.16.1 22.06.2023 SB2023062281
SB2023071336
SB20230720114
and 15 more
#VU47274 - Improper Verification of Cryptographic Signature
CVE-2020-14365
CWE-347 Low
No
No
0.1.7-159000.3.8.1 23.09.2020 SB2020092344
SB2020100222
SB2020102019
and 12 more
#VU14157 - Permissions, Privileges, and Access Controls
CVE-2018-10874
CWE-264 Low
No
No
0.1.7-159000.3.8.1 31.07.2018 SB2018080113
SB2018073118
SB2019011610
and 10 more
#VU12555 - Information Exposure Through Log Files
CVE-2017-7550
CWE-532 Low
No
No
0.1.7-159000.3.8.1 05.03.2018 SB2018030511
SB2017101940
SB2024050718
and 4 more
#VU7411 - Improper input validation
CVE-2016-8647
CWE-20 Low
No
No
0.1.7-159000.3.8.1 11.07.2017 SB2017070615
SB2024050718
SB2024050721
and 4 more
#VU6639 - Improper input validation
CVE-2017-7466
CWE-20 Medium
Available
No
0.1.7-159000.3.8.1 17.05.2017 SB2017052310
SB2017052601
SB2017070615
and 22 more


Showing elements 41 - 60 out of 58