Known vulnerabilities in SUSE Enterprise Storage - page 169

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_enterprise_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 4627
Public exploits: 201
Known exploited (KEV): 64
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Enterprise Storage SUSE Enterprise Storage is affected by 4627 known vulnerabilities: 42 critical, 786 high, 1334 medium, 2464 low Critical High Medium Low

Vulnerabilities (4627)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67609 - Out-of-bounds read
CVE-2022-41318
CWE-125 Medium
No
No
- 23.09.2022 SB2022092322
SB2022092651
SB2022100537
and 20 more
#VU67604 - Improper Access Control
CVE-2022-41317
CWE-284 Low
No
No
- 23.09.2022 SB2022092311
SB2022092651
SB2022100635
and 9 more
#VU67591 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-28861
CWE-601 Low
No
No
- 22.09.2022 SB2022092243
SB2022092244
SB2022093032
and 76 more
#VU67532 - Use After Free
CVE-2022-40674
CWE-416 High
No
No
- 21.09.2022 SB2022092118
SB2022092119
SB2022092317
and 111 more
#VU67512 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2016-3695
CWE-74 Low
No
No
- 20.09.2022 SB2017122926
SB2022092046
SB2022092047
and 6 more
#VU67199 - Memory corruption
CVE-2022-32886
CWE-119 High
No
No
- 12.09.2022 SB2022091231
SB2022091232
SB2022091233
and 25 more
#VU67198 - Out-of-bounds read
CVE-2022-32912
CWE-125 High
No
No
- 12.09.2022 SB2022091231
SB2022091232
SB2022091233
and 13 more
#VU66467 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-42771
CWE-22 Medium
No
No
- 12.08.2022 SB20211214110
SB2022081226
SB2022083038
and 18 more
#VU65287 - Permissions, Privileges, and Access Controls
CVE-2022-29187
CWE-264 Medium
No
No
- 13.07.2022 SB2022071347
SB2022071348
SB2022071350
and 30 more
#VU64399 - Cross-Site Request Forgery (CSRF)
CVE-2022-21703
CWE-352 Medium
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64397 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21702
CWE-79 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64394 - Authorization Bypass Through User-Controlled Key
CVE-2022-21713
CWE-639 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 13 more
#VU62403 - Improper input validation
CVE-2021-22570
CWE-20 Medium
No
No
- 19.04.2022 SB2022041949
SB2022062233
SB2022100638
and 34 more
#VU61797 - Incorrect Default Permissions
CVE-2022-27651
CWE-276 Medium
No
No
- 01.04.2022 SB2022040108
SB2022040807
SB2022042012
and 14 more
#VU61603 - Memory corruption
CVE-2021-33430
CWE-119 Low
No
No
- 24.03.2022 SB2021121724
SB2022032436
SB2022032439
and 11 more
#VU61601 - Memory corruption
CVE-2021-41496
CWE-119 Low
No
No
- 24.03.2022 SB2022032416
SB2022032436
SB2022032439
and 12 more
#VU27951 - Resource exhaustion
CVE-2020-12825
CWE-400 Medium
No
No
- 15.05.2020 SB2020051519
SB2020093066
SB2022042623
and 14 more
#VU23796 - Out-of-bounds write
CVE-2019-19906
CWE-787 Medium
No
No
- 23.12.2019 SB2019122303
SB2019122304
SB2020012820
and 15 more
#VU23492 - Improper input validation
CVE-2019-1352
CWE-20 High
No
No
- 10.12.2019 SB2019121019
SB2019121201
SB2019121207
and 18 more
#VU216 - Memory corruption
CVE-2014-9862
CWE-119 High
No
No
- 26.07.2016 SB2020031929
SB2022010607
SB2022090645
and 4 more


Showing elements 3361 - 3380 out of 4627