Known vulnerabilities in SUSE Linux Enterprise Module for SUSE Manager Server - page 4

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_suse_manager_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 115
Public exploits: 18
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for SUSE Manager Server SUSE Linux Enterprise Module for SUSE Manager Server is affected by 115 known vulnerabilities: 1 critical, 34 high, 55 medium, 25 low Critical High Medium Low

Vulnerabilities (115)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU73955 - Server-Side Request Forgery (SSRF)
CVE-2021-39150
CWE-918 High
Available
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73954 - Deserialization of Untrusted Data
CVE-2021-39151
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73953 - Deserialization of Untrusted Data
CVE-2021-39149
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73951 - Deserialization of Untrusted Data
CVE-2021-39148
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73950 - Deserialization of Untrusted Data
CVE-2021-39147
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73949 - Deserialization of Untrusted Data
CVE-2021-39146
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 11 more
#VU73948 - Deserialization of Untrusted Data
CVE-2021-39145
CWE-502 High
No
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 14 more
#VU73946 - Deserialization of Untrusted Data
CVE-2021-39141
CWE-502 High
Available
No
- 22.03.2023 SB2021082322
SB2023032239
SB2023050815
and 14 more
#VU68720 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-39144
CWE-94 Critical
Available
Exploited
- 25.10.2022 SB2021082322
SB2022102568
SB2023031801
and 17 more
#VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43815
CWE-22 Low
No
No
- 15.06.2022 SB2021121022
SB2022062026
SB2022102094
and 8 more
#VU64402 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21673
CWE-200 Low
No
No
- 15.06.2022 SB2022061623
SB2022062026
SB2022081215
and 12 more
#VU64399 - Cross-Site Request Forgery (CSRF)
CVE-2022-21703
CWE-352 Medium
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64397 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21702
CWE-79 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64394 - Authorization Bypass Through User-Controlled Key
CVE-2022-21713
CWE-639 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 13 more
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
- 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU62511 - Improper input validation
CVE-2021-39140
CWE-20 Medium
No
No
- 22.04.2022 SB2022042257
SB2023012518
SB2023032239
and 15 more
#VU62403 - Improper input validation
CVE-2021-22570
CWE-20 Medium
No
No
- 19.04.2022 SB2022041949
SB2022062233
SB2022100638
and 34 more
#VU59813 - Improper input validation
CVE-2021-39139
CWE-20 High
No
No
- 19.01.2022 SB2022011911
SB2022011912
SB2022012325
and 21 more
#VU58294 -
CVE-2021-21996
Low
No
No
- 23.11.2021 SB2021112301
SB2021112302
SB2021102724
and 20 more
#VU48543 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-25638
CWE-89 High
No
No
- 19.11.2020 SB2020111901
SB2021050201
SB2021063003
and 8 more


Showing elements 61 - 80 out of 115