Known vulnerabilities in SUSE Manager Client Tools Beta for SLE - page 2

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_manager_client_tools_beta_for_sle:*:*:*:*:*:*:*:*
Total vulnerabilities: 63
Public exploits: 5
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Manager Client Tools Beta for SLE SUSE Manager Client Tools Beta for SLE is affected by 63 known vulnerabilities: 6 high, 24 medium, 33 low Critical High Medium Low

Vulnerabilities (63)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79967 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-40577
CWE-79 Low
No
No
- 25.08.2023 SB2023082505
SB2024012403
SB2024021614
and 5 more
#VU78470 - Missing Authorization
CVE-2023-2183
CWE-862 Low
No
No
- 20.07.2023 SB20230720110
SB20230720114
SB20230720115
and 9 more
#VU77652 - Improper Authentication
CVE-2023-3128
CWE-287 High
No
No
- 22.06.2023 SB2023062281
SB2023071336
SB20230720114
and 15 more
#VU77623 - Improper Synchronization
CVE-2023-2801
CWE-662 Medium
No
No
- 22.06.2023 SB2023062244
SB20230720114
SB20230720115
and 8 more
#VU77620 - Exposure of sensitive information to an unauthorized actor
CVE-2023-1387
CWE-200 Medium
No
No
- 22.06.2023 SB2023062227
SB2023062230
SB2023062231
and 7 more
#VU75360 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-1410
CWE-79 Low
No
No
- 19.04.2023 SB2023041950
SB2023041951
SB2023041952
and 11 more
#VU75359 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-0594
CWE-79 Low
No
No
- 19.04.2023 SB2023041949
SB2023041951
SB2023041952
and 6 more
#VU75358 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-0507
CWE-79 Low
No
No
- 19.04.2023 SB2023041949
SB2023041951
SB2023041952
and 6 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72128 - Improper Verification of Cryptographic Signature
CVE-2022-31123
CWE-347 Medium
No
No
- 11.02.2023 SB2023021201
SB2023021202
SB2023021203
and 15 more
#VU71566 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-39324
CWE-451 Low
No
No
- 26.01.2023 SB2023012631
SB2023032032
SB2023032033
and 12 more
#VU69691 - Use of Password Hash Instead of Password for Authentication
CVE-2022-46146
CWE-836 Low
No
No
- 29.11.2022 SB2022112926
SB2022113012
SB2023022044
and 33 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
- 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
- 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU65355 - Incorrect Regular Expression
CVE-2020-7753
CWE-185 Medium
No
No
- 15.07.2022 SB2020102724
SB2022071510
SB2023062230
and 12 more
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
- 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU63461 - Improper input validation
CVE-2022-29170
CWE-20 Low
No
No
- 19.05.2022 SB2022051916
SB2024012352
SB2024012403
and 3 more
#VU57967 - Improper input validation
CVE-2021-3807
CWE-20 Medium
No
No
- 05.11.2021 SB2021110513
SB2021112603
SB2022042257
and 51 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
- 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
- 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more


Showing elements 21 - 40 out of 63