Known vulnerabilities in SUSE Manager Proxy 4.3

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_manager_proxy_4_3:*:*:*:*:*:*:*:*
Total vulnerabilities: 741
Public exploits: 27
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Manager Proxy 4.3 SUSE Manager Proxy 4.3 is affected by 741 known vulnerabilities: 5 critical, 40 high, 62 medium, 634 low Critical High Medium Low

Vulnerabilities (741)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU120966 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2025-12764
CWE-90 Medium
No
No
- 05.01.2026 -
#VU120963 - Improper Certificate Validation
CVE-2025-12765
CWE-295 Medium
No
No
- 05.01.2026 -
#VU120621 - Stack-based buffer overflow
CVE-2025-12464
CWE-121 Low
No
No
- 29.12.2025 -
#VU119908 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-43531
CWE-362 Low
No
No
- 13.12.2025 -
#VU119907 - Memory corruption
CVE-2025-43501
CWE-119 Low
No
No
- 13.12.2025 -
#VU119902 - Use After Free
CVE-2025-43529
CWE-416 Critical
Available
Exploited
- 13.12.2025 -
#VU119833 - Out-of-bounds write
CVE-2025-14174
CWE-787 Critical
Available
Exploited
- 11.12.2025 -
#VU119150 - Integer overflow
CVE-2025-55753
CWE-190 Low
No
No
- 04.12.2025 -
#VU119149 - Improper Neutralization of Server-Side Includes (SSI) Within a Web Page
CVE-2025-58098
CWE-97 Low
Available
No
- 04.12.2025 -
#VU119147 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2025-65082
CWE-74 Low
No
No
- 04.12.2025 -
#VU119146 - Improper input validation
CVE-2025-66200
CWE-20 Low
No
No
- 04.12.2025 -
#VU118501 - Resource Management Errors
CVE-2025-40204
CWE-399 Low
No
No
- 13.11.2025 -
#VU118403 - Out-of-bounds read
CVE-2025-40121
CWE-125 Low
No
No
- 12.11.2025 -
#VU118400 - Out-of-bounds read
CVE-2025-40154
CWE-125 Low
No
No
- 12.11.2025 -
#VU117752 - Error Handling
CVE-2025-40040
CWE-388 Low
Available
No
- 28.10.2025 -
#VU117714 - Missing release of memory after effective lifetime
CVE-2025-40048
CWE-401 Low
No
No
- 28.10.2025 -
#VU116819 - Memory corruption
CVE-2023-53676
CWE-119 Low
No
No
- 08.10.2025 -
#VU115443 - NULL Pointer Dereference
CVE-2022-50280
CWE-476 Low
No
No
- 16.09.2025 -
#VU94527 - Out-of-bounds read
CVE-2024-6505
CWE-125 Low
No
No
- 18.07.2024 -
#VU85831 - Out-of-bounds read
CVE-2023-1544
CWE-125 Low
No
No
- 26.01.2024 -


Showing elements 1 - 20 out of 741