Known vulnerabilities in SUSE Linux Enterprise Module for SUSE Manager Proxy

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_suse_manager_proxy:*:*:*:*:*:*:*:*
Total vulnerabilities: 33
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for SUSE Manager Proxy SUSE Linux Enterprise Module for SUSE Manager Proxy is affected by 33 known vulnerabilities: 5 high, 11 medium, 17 low Critical High Medium Low

Vulnerabilities (33)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69395 - Out-of-bounds write
CVE-2022-3775
CWE-787 Low
No
No
- 16.11.2022 SB2022111652
SB2022111654
SB2022111661
and 38 more
#VU69394 - Out-of-bounds write
CVE-2022-2601
CWE-787 Low
No
No
- 16.11.2022 SB2022111652
SB2022111654
SB2022111661
and 44 more
#VU67516 - Command injection
CVE-2021-42740
CWE-77 High
No
No
- 20.09.2022 SB2021102139
SB2022092053
SB2022092054
and 9 more
#VU67515 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2021-41411
CWE-611 High
No
No
- 20.09.2022 SB2022092052
SB2022092053
SB2022092054
and 2 more
#VU66201 - Security Features
CVE-2022-2255
CWE-254 Medium
No
No
- 09.08.2022 SB2022080904
SB2022080914
SB2022111643
and 6 more
#VU65835 - Incorrect Regular Expression
CVE-2022-31129
CWE-185 Medium
No
No
- 27.07.2022 SB2022072729
SB2022072901
SB2022081048
and 102 more
#VU65759 - Out-of-bounds read
CVE-2022-2469
CWE-125 Low
No
No
- 25.07.2022 SB2022072519
SB2022072531
SB2022101129
and 17 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
- 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
- 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
- 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU64065 - Use After Free
CVE-2022-28736
CWE-416 Low
No
No
- 08.06.2022 SB2022060810
SB2022061540
SB2022061566
and 32 more
#VU64059 - Out-of-bounds write
CVE-2021-3696
CWE-787 Low
No
No
- 08.06.2022 SB2022060810
SB2022061540
SB2022061566
and 31 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
- 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU57422 - Information Exposure Through an Error Message
CVE-2021-3620
CWE-209 Low
No
No
- 19.10.2021 SB2021101903
SB2021101904
SB2021101905
and 10 more
#VU54626 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3583
CWE-94 High
No
No
- 08.07.2021 SB2021070822
SB2021070823
SB2021071517
and 12 more
#VU52984 - Information Exposure Through Log Files
CVE-2021-3447
CWE-532 Low
No
No
- 10.05.2021 SB2021040180
SB2021051001
SB2021072616
and 13 more
#VU50936 - Information Exposure Through Log Files
CVE-2021-20191
CWE-532 Low
No
No
- 25.02.2021 SB2021022511
SB2021022512
SB2021022513
and 11 more
#VU50818 - Information Exposure Through Log Files
CVE-2021-20228
CWE-532 Low
No
No
- 22.02.2021 SB2021022203
SB2021022205
SB2021022512
and 7 more
#VU50429 - Information Exposure Through Log Files
CVE-2021-20180
CWE-532 Low
No
No
- 09.02.2021 SB2021020903
SB2021020904
SB2021022512
and 11 more
#VU50428 - Information Exposure Through Log Files
CVE-2021-20178
CWE-532 Low
No
No
- 09.02.2021 SB2021020903
SB2021020904
SB2021022512
and 10 more


Showing elements 1 - 20 out of 33