Known vulnerabilities in SUSE Enterprise Storage 7.1 - page 103

Vendor: SUSE
Version: 7.1
Software CPE: cpe:2.3:o:suse:suse_enterprise_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 3964
Public exploits: 168
Known exploited (KEV): 51
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Enterprise Storage version 7.1 SUSE Enterprise Storage 7.1 is affected by 3964 vulnerabilities: 34 critical, 660 high, 1110 medium, 2159 low Critical High Medium Low

Vulnerabilities (3964)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU87779 - Exposure of sensitive information to an unauthorized actor
CVE-2024-29025
CWE-200 Medium
No
No
- 25.03.2024 SB2024032532
SB2024040230
SB2024042995
and 95 more
#VU87680 - Uncontrolled Recursion
CVE-2024-25111
CWE-674 Medium
No
No
- 20.03.2024 SB2024032067
SB2024032078
SB2024032634
and 24 more
#VU87616 - Improper Privilege Management
CVE-2024-1753
CWE-269 High
No
No
- 19.03.2024 SB2024031925
SB2024032051
SB2024032613
and 41 more
#VU87495 - Protection Mechanism Failure
CVE-2023-39368
CWE-693 Medium
No
No
- 13.03.2024 SB2024031327
SB2024031439
SB2024032236
and 6 more
#VU87490 - Exposure of sensitive information to an unauthorized actor
CVE-2023-38575
CWE-200 Low
No
No
- 13.03.2024 SB2024031315
SB2024031439
SB2024032236
and 6 more
#VU87461 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43490
CWE-200 Low
No
No
- 12.03.2024 SB20240312348
SB2024040830
SB2024080107
#VU87459 - Security Features
CVE-2023-22655
CWE-254 Low
No
No
- 12.03.2024 SB20240312346
SB2024040830
SB2024080107
and 8 more
#VU87457 - Exposure of sensitive information to an unauthorized actor
CVE-2023-28746
CWE-200 Low
No
No
- 12.03.2024 SB20240312343
SB20240312345
SB20240312357
and 51 more
#VU87208 - Out-of-bounds read
CVE-2023-48161
CWE-125 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024060719
and 28 more
#VU87207 - Heap-based Buffer Overflow
CVE-2022-28506
CWE-122 High
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2022062452
and 9 more
#VU87206 - Missing release of memory after effective lifetime
CVE-2021-40633
CWE-401 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024051326
and 11 more
#VU87185 - UNIX Symbolic Link (Symlink) Following
CVE-2023-6597
CWE-61 Low
No
No
- 07.03.2024 SB2024030718
SB2024030726
SB2024030727
and 88 more
#VU86983 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-1597
CWE-89 High
No
No
- 04.03.2024 SB2024030405
SB2024030406
SB2024030427
and 47 more
#VU86808 - Resource exhaustion
CVE-2024-22201
CWE-400 Medium
No
No
- 26.02.2024 SB2024022652
SB2024030711
SB2024030845
and 43 more
#VU86768 - Improper Authentication
CVE-2023-52160
CWE-287 Medium
Public exploit available
No
- 23.02.2024 SB2024022343
SB2024022345
SB2024022346
and 11 more
#VU86709 - Exposure of sensitive information to an unauthorized actor
CVE-2024-24758
CWE-200 Low
No
No
- 22.02.2024 SB2024022211
SB2024022225
SB2024022832
and 13 more
#VU86547 - Improper input validation
CVE-2024-25617
CWE-20 Medium
No
No
- 15.02.2024 SB2024021536
SB2024030157
SB2024030601
and 20 more
#VU86531 - Resource exhaustion
CVE-2024-24814
CWE-400 Medium
No
No
- 15.02.2024 SB2024021511
SB2024022245
SB2024030531
and 9 more
#VU85896 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-7207
CWE-22 High
No
No
- 30.01.2024 SB2024013015
SB2024013019
SB2024013020
and 12 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
- 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more


Showing elements 2041 - 2060 out of 3964