Known vulnerabilities in spacecmd - page 7

Vendor: SUSE
Software: spacecmd
Software CPE: cpe:2.3:o:suse:spacecmd:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 161
Public exploits: 14
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting spacecmd spacecmd is affected by 161 known vulnerabilities: 19 high, 73 medium, 69 low Critical High Medium Low

Vulnerabilities (161)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82944 - UNIX Symbolic Link (Symlink) Following
CVE-2023-34049
CWE-61 Low
No
No
4.3.25-2.60.1 09.11.2023 SB2023110931
SB2023110932
SB2023110933
and 17 more
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
4.3.10-2.32.1, 4.3.10-2.33.1, 4.3.10-2.39.1, 4.3.10-41.39.1, 4.3.10-159000.6.39.2 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
4.3.10-2.32.1, 4.3.10-2.33.1, 4.3.10-2.39.1, 4.3.10-41.39.1, 4.3.10-159000.6.39.2 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
4.3.10-2.32.1, 4.3.10-2.33.1, 4.3.10-2.39.1, 4.3.10-159000.6.39.2 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
4.3.10-2.32.1, 4.3.10-2.33.1, 4.3.10-2.39.1, 4.3.10-41.39.1, 4.3.10-159000.6.39.2 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU80471 - Improper input validation
CVE-2023-20897
CWE-20 Medium
No
No
4.3.23-2.54.1 05.09.2023 SB2023090559
SB2023090563
SB2023090601
and 14 more
#VU76397 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-28370
CWE-601 Medium
No
No
4.3.22-2.51.2, 4.3.22-38.124.3, 4.3.22-150000.3.101.1 22.05.2023 SB2023052204
SB2023061333
SB2023062257
and 28 more
#VU69064 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-43754
CWE-79 Low
No
No
4.2.20-150300.4.30.2 07.11.2022 SB2022110737
SB2022110739
SB2022110740
and 1 more
#VU69063 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-43753
CWE-22 Medium
Available
No
4.2.20-150300.4.30.2 07.11.2022 SB2022110737
SB2022110739
SB2022110740
and 1 more
#VU69062 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-31255
CWE-22 Medium
Available
No
4.2.20-150300.4.30.2 07.11.2022 SB2022110737
SB2022110739
SB2022110740
and 1 more
#VU67515 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2021-41411
CWE-611 High
No
No
4.2.19-150300.4.27.2 20.09.2022 SB2022092052
SB2022092053
SB2022092054
and 2 more
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
4.3.14-2.33.1, 4.3.14-2.48.1, 4.3.14-50.1 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU64572 - Information Exposure Through an Error Message
CVE-2022-31248
CWE-209 Low
No
No
4.1.18-150200.4.39.3, 4.2.17-150300.4.21.4, 4.2.18-150300.4.24.3, 4.3.14-150400.3.3.2 22.06.2022 SB2022062201
SB2022062202
SB2022062203
and 5 more
#VU64571 - Allocation of Resources Without Limits or Throttling
CVE-2022-21952
CWE-770 Medium
No
No
4.1.18-150200.4.39.3, 4.2.17-150300.4.21.4 22.06.2022 SB2022062201
SB2022062202
SB2022062203
and 2 more
#VU64030 - Resource exhaustion
CVE-2021-44906
CWE-400 High
No
No
4.2.17-150300.4.21.4 07.06.2022 SB2022060836
SB2022062103
SB2022062203
and 53 more
#VU62716 - Improper input validation
CVE-2022-26520
CWE-20 High
No
No
4.1.18-150200.4.39.3 02.05.2022 SB2022050206
SB2022061311
SB2022062202
and 13 more
#VU62714 - Improper Initialization
CVE-2022-21724
CWE-665 Medium
No
No
4.1.18-150200.4.39.3 02.05.2022 SB2022050205
SB2022062202
SB2022062204
and 18 more
#VU57422 - Information Exposure Through an Error Message
CVE-2021-3620
CWE-209 Low
No
No
4.3.14-150000.3.83.1, 5.0.1-159000.6.42.1 19.10.2021 SB2021101903
SB2021101904
SB2021101905
and 10 more
#VU54626 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3583
CWE-94 High
No
No
4.3.14-150000.3.83.1, 5.0.1-159000.6.42.1 08.07.2021 SB2021070822
SB2021070823
SB2021071517
and 12 more
#VU52984 - Information Exposure Through Log Files
CVE-2021-3447
CWE-532 Low
No
No
4.3.14-150000.3.83.1, 5.0.1-159000.6.42.1 10.05.2021 SB2021040180
SB2021051001
SB2021072616
and 13 more


Showing elements 121 - 140 out of 161