Known vulnerabilities in SUSE Linux Enterprise Module for Transactional Server

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_transactional_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 15
Public exploits: 3
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Transactional Server SUSE Linux Enterprise Module for Transactional Server is affected by 15 known vulnerabilities: 1 critical, 1 high, 4 medium, 9 low Critical High Medium Low

Vulnerabilities (15)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
- 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU60005 - Permissions, Privileges, and Access Controls
CVE-2021-3996
CWE-264 Low
No
No
- 25.01.2022 SB2022012524
SB2022012528
SB2022020938
and 4 more
#VU60004 - Permissions, Privileges, and Access Controls
CVE-2021-3995
CWE-264 Low
No
No
- 25.01.2022 SB2022012524
SB2022012528
SB2022020938
and 4 more
#VU58294 -
CVE-2021-21996
Low
No
No
- 23.11.2021 SB2021112301
SB2021112302
SB2021102724
and 20 more
#VU58292 - Command injection
CVE-2021-31607
CWE-77 Low
No
No
- 23.11.2021 SB2021042332
SB2021112302
SB2021052114
and 24 more
#VU51588 - Incorrect Implementation of Authentication Algorithm
CVE-2021-25315
CWE-303 Low
No
No
- 22.03.2021 SB2021032203
SB2021062235
SB2021062236
and 8 more
#VU48206 - Improper Authentication
CVE-2020-25592
CWE-287 High
Available
No
- 06.11.2020 SB2020110934
SB2020110935
SB2020110936
and 11 more
#VU27495 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-11652
CWE-22 Medium
Available
Exploited
- 04.05.2020 SB2020050410
SB2020050417
SB2020050506
and 10 more
#VU27494 - Improper Authentication
CVE-2020-11651
CWE-287 Critical
Available
Exploited
- 04.05.2020 SB2020050410
SB2020050417
SB2020050506
and 10 more
#VU15545 - Command injection
CVE-2018-15751
CWE-77 Low
No
No
- 26.10.2018 SB2018102608
SB2018121816
SB2018122002
and 6 more
#VU15544 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-15750
CWE-22 Low
No
No
- 25.10.2018 SB2018102608
SB2018121816
SB2018122002
and 6 more