Known vulnerabilities in SUSE Manager Client Tools Beta for SLE 12

Vendor: SUSE
Version: 12
Software CPE: cpe:2.3:o:suse:suse_manager_client_tools_beta_for_sle:*:*:*:*:*:*:*:*
Total vulnerabilities: 49
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Manager Client Tools Beta for SLE version 12 SUSE Manager Client Tools Beta for SLE 12 is affected by 49 vulnerabilities: 5 high, 22 medium, 22 low Critical High Medium Low

Vulnerabilities (49)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU89210 - Incorrect Authorization
CVE-2023-6152
CWE-863 Low
No
No
- 07.05.2024 SB2024050715
SB2024050717
SB2024050718
and 8 more
#VU87845 - Improper Authorization
CVE-2024-1313
CWE-285 Medium
No
No
- 27.03.2024 SB2024032711
SB2024043089
SB2024050720
and 10 more
#VU79967 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-40577
CWE-79 Low
No
No
- 25.08.2023 SB2023082505
SB2024012403
SB2024021614
and 5 more
#VU75358 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-0507
CWE-79 Low
No
No
- 19.04.2023 SB2023041949
SB2023041951
SB2023041952
and 6 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72132 - Improper Authentication
CVE-2022-39229
CWE-287 Low
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 13 more
#VU72131 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39201
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 12 more
#VU72130 - Exposure of sensitive information to an unauthorized actor
CVE-2022-31130
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 11 more
#VU72128 - Improper Verification of Cryptographic Signature
CVE-2022-31123
CWE-347 Medium
No
No
- 11.02.2023 SB2023021201
SB2023021202
SB2023021203
and 15 more
#VU71566 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-39324
CWE-451 Low
No
No
- 26.01.2023 SB2023012631
SB2023032032
SB2023032033
and 12 more
#VU69691 - Use of Password Hash Instead of Password for Authentication
CVE-2022-46146
CWE-836 Low
No
No
- 29.11.2022 SB2022112926
SB2022113012
SB2023022044
and 33 more
#VU69485 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39307
CWE-200 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU69484 - Improper input validation
CVE-2022-39306
CWE-20 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
- 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
- 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
- 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU68336 - UNIX Symbolic Link (Symlink) Following
CVE-2019-3698
CWE-61 Low
No
No
- 14.10.2022 SB2022101445
SB2024051429
SB2024061808
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
- 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
- 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU1344 - UNIX Symbolic Link (Symlink) Following
CVE-2016-9566
CWE-61 Low
Public exploit available
No
- 16.12.2016 SB2016121601
SB2016123102
SB2022101445
and 2 more


Showing elements 1 - 20 out of 49