Known vulnerabilities in SUSE Linux Enterprise Module for Advanced Systems Management

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_advanced_systems_management:*:*:*:*:*:*:*:*
Total vulnerabilities: 21
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Advanced Systems Management SUSE Linux Enterprise Module for Advanced Systems Management is affected by 21 known vulnerabilities: 6 high, 10 medium, 5 low Critical High Medium Low

Vulnerabilities (21)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
- 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU62794 - Unprotected Transport of Credentials
CVE-2021-27023
CWE-523 Medium
No
No
- 04.05.2022 SB2022050414
SB2022050430
SB2022060135
and 5 more
#VU58294 -
CVE-2021-21996
Low
No
No
- 23.11.2021 SB2021112301
SB2021112302
SB2021102724
and 20 more
#VU58292 - Command injection
CVE-2021-31607
CWE-77 Low
No
No
- 23.11.2021 SB2021042332
SB2021112302
SB2021052114
and 24 more
#VU54520 - Improper input validation
CVE-2020-14343
CWE-20 High
Available
No
- 04.07.2021 SB2021070403
SB2021070404
SB2022042259
and 17 more
#VU50987 - Improper Certificate Validation
CVE-2020-28972
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50986 - Improper Authentication
CVE-2021-3144
CWE-287 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 28 more
#VU50985 - Improper Certificate Validation
CVE-2020-35662
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50984 - Command injection
CVE-2021-3148
CWE-77 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50983 - Information Exposure Through Log Files
CVE-2021-25284
CWE-532 Low
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50982 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-25283
CWE-94 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50981 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-3197
CWE-78 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50980 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-25282
CWE-22 Medium
Available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50979 - Improper Access Control
CVE-2021-25281
CWE-284 Medium
Available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU25823 - Improper input validation
CVE-2020-1747
CWE-20 High
No
No
- 09.03.2020 SB2020030903
SB2020041201
SB2020051129
and 21 more
#VU19388 - Credentials Management
CVE-2018-18074
CWE-255 High
No
No
- 26.07.2019 SB2019072007
SB2019080710
SB2020032626
and 18 more


Showing elements 1 - 20 out of 21