Known vulnerabilities in SUSE Linux Enterprise Module for SUSE Manager Server - page 3

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_suse_manager_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 115
Public exploits: 18
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for SUSE Manager Server SUSE Linux Enterprise Module for SUSE Manager Server is affected by 115 known vulnerabilities: 1 critical, 34 high, 55 medium, 25 low Critical High Medium Low

Vulnerabilities (115)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
- 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU64571 - Allocation of Resources Without Limits or Throttling
CVE-2022-21952
CWE-770 Medium
No
No
- 22.06.2022 SB2022062201
SB2022062202
SB2022062203
and 2 more
#VU64430 - Incorrect Authorization
CVE-2021-41244
CWE-863 Medium
No
No
- 16.06.2022 SB2021111513
SB2022062026
SB2022102094
and 5 more
#VU64030 - Resource exhaustion
CVE-2021-44906
CWE-400 High
No
No
- 07.06.2022 SB2022060836
SB2022062103
SB2022062203
and 52 more
#VU62716 - Improper input validation
CVE-2022-26520
CWE-20 High
No
No
- 02.05.2022 SB2022050206
SB2022061311
SB2022062202
and 13 more
#VU62714 - Improper Initialization
CVE-2022-21724
CWE-665 Medium
No
No
- 02.05.2022 SB2022050205
SB2022062202
SB2022062204
and 18 more
#VU61799 - Out-of-bounds write
CVE-2020-36518
CWE-787 Medium
No
No
- 01.04.2022 SB2022040113
SB2022040114
SB2022040115
and 147 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
- 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU60986 - Improper input validation
CVE-2020-28491
CWE-20 Medium
No
No
- 03.03.2022 SB2022030316
SB2022030322
SB2022062413
and 12 more
#VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43798
CWE-22 High
Available
Exploited
- 08.12.2021 SB2021120803
SB2022062026
SB2022102094
and 7 more
#VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-41174
CWE-79 Low
Available
No
- 03.11.2021 SB2021110312
SB2021110517
SB2022062026
and 4 more
#VU57422 - Information Exposure Through an Error Message
CVE-2021-3620
CWE-209 Low
No
No
- 19.10.2021 SB2021101903
SB2021101904
SB2021101905
and 10 more
#VU57320 - Improper Access Control
CVE-2021-39226
CWE-284 Medium
Available
Exploited
- 12.10.2021 SB2021101262
SB2021101320
SB2021101321
and 22 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
- 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
- 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more
#VU54626 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3583
CWE-94 High
No
No
- 08.07.2021 SB2021070822
SB2021070823
SB2021071517
and 12 more
#VU52984 - Information Exposure Through Log Files
CVE-2021-3447
CWE-532 Low
No
No
- 10.05.2021 SB2021040180
SB2021051001
SB2021072616
and 13 more
#VU48979 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2020-25649
CWE-611 Medium
No
No
- 03.12.2020 SB2020121510
SB2021020321
SB2021042112
and 68 more
#VU18785 - Improper input validation
CVE-2019-5427
CWE-20 Medium
No
No
- 12.06.2019 SB2019042204
SB2020032701
SB2022022132
and 5 more
#VU18784 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-20433
CWE-611 Medium
No
No
- 12.06.2019 SB2018122409
SB2019061208
SB2022042586
and 2 more


Showing elements 41 - 60 out of 115