Known vulnerabilities in SUSE Manager Proxy - page 241

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_manager_proxy:*:*:*:*:*:*:*:*
Total vulnerabilities: 6824
Public exploits: 209
Known exploited (KEV): 70
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Manager Proxy SUSE Manager Proxy is affected by 6824 known vulnerabilities: 41 critical, 741 high, 1577 medium, 4465 low Critical High Medium Low

Vulnerabilities (6824)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU74492 - Configuration
CWE-16 Low
No
No
- 05.04.2023 SB2023040552
#VU74491 - Configuration
CWE-16 Low
No
No
- 05.04.2023 SB2023040554
#VU74490 - Configuration
CWE-16 Low
No
No
- 05.04.2023 SB2023040553
#VU74488 - Configuration
CWE-16 Low
No
No
- 05.04.2023 SB2023040550
#VU74300 - Resource Management Errors
CVE-2023-1289
CWE-399 Medium
No
No
- 03.04.2023 SB2023040335
SB2023040344
SB2023040345
and 7 more
#VU74196 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28486
CWE-78 Low
No
No
- 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 31 more
#VU74153 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2023-28427
CWE-1321 Medium
No
No
- 29.03.2023 SB2023032905
SB2023032908
SB2023033002
and 15 more
#VU73957 - Sensitive Cookie in HTTPS Session Without 'Secure' Attribute
CVE-2023-28708
CWE-614 Low
No
No
- 22.03.2023 SB2023032237
SB2023032939
SB2023032945
and 53 more
#VU73835 - Improper input validation
CVE-2023-28100
CWE-20 Low
No
No
- 20.03.2023 SB2023032035
SB2023033142
SB2023033143
and 15 more
#VU73834 - Improper input validation
CVE-2023-28101
CWE-20 Medium
No
No
- 20.03.2023 SB2023032035
SB2023033142
SB2023033143
and 15 more
#VU73675 - Memory corruption
CVE-2023-28176
CWE-119 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 37 more
#VU73674 - Exposure of sensitive information to an unauthorized actor
CVE-2023-28163
CWE-200 Low
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 11 more
#VU73673 - Out-of-bounds read
CVE-2023-25752
CWE-125 Medium
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73672 - Type conversion
CVE-2023-28162
CWE-704 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73671 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-28164
CWE-451 Medium
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73670 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-25751
CWE-94 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 39 more
#VU72732 - Improper input validation
CVE-2023-1161
CWE-20 Medium
No
No
- 03.03.2023 SB2023030308
SB2023040487
SB2023061632
and 5 more
#VU72339 - Resource exhaustion
CVE-2023-25577
CWE-400 Medium
No
No
- 16.02.2023 SB2023021673
SB2023022875
SB2023031332
and 49 more
#VU71214 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-22298
CWE-601 Low
No
No
- 17.01.2023 SB2023011722
SB2023040332
SB2023081673
and 1 more
#VU64067 - Out-of-bounds write
CVE-2022-28737
CWE-787 Low
No
No
- 08.06.2022 SB2022060810
SB2022061652
SB2022061653
and 24 more


Showing elements 4801 - 4820 out of 6824