Known vulnerabilities in SUSE Manager Server Module - page 2

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_manager_server_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 53
Public exploits: 3
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Manager Server Module SUSE Manager Server Module is affected by 53 known vulnerabilities: 7 high, 32 medium, 14 low Critical High Medium Low

Vulnerabilities (53)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86855 - Improper Authorization
CVE-2022-0860
CWE-285 Medium
No
No
- 27.02.2024 SB2024022765
SB2024022766
SB2024022767
and 6 more
#VU86625 - Resource exhaustion
CVE-2024-26308
CWE-400 Medium
No
No
- 20.02.2024 SB2024022033
SB2024022937
SB2024031520
and 137 more
#VU86618 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-32189
CWE-22 Medium
No
No
- 20.02.2024 SB2024022023
SB2024022029
#VU84791 - Information Exposure Through Log Files
CVE-2023-22644
CWE-532 Low
No
No
- 26.12.2023 SB2023122702
SB2023122703
SB2024022748
and 1 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
- 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU83977 - Insufficient Entropy
CVE-2023-31582
CWE-331 Medium
No
No
- 07.12.2023 SB2023120724
SB2023120727
SB2023120731
and 17 more
#VU82944 - UNIX Symbolic Link (Symlink) Following
CVE-2023-34049
CWE-61 Low
No
No
- 09.11.2023 SB2023110931
SB2023110932
SB2023110933
and 17 more
#VU81948 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-4759
CWE-59 Medium
No
No
- 12.10.2023 SB2023101242
SB2023101243
SB2023103012
and 21 more
#VU78913 - Improper Certificate Validation
CVE-2023-29409
CWE-295 Medium
No
No
- 03.08.2023 SB2023080320
SB2023080321
SB2023080370
and 98 more
#VU72126 - Deserialization of Untrusted Data
CVE-2022-1415
CWE-502 High
No
No
- 11.02.2023 SB2023021104
SB2023021106
SB2023021108
and 3 more
#VU67516 - Command injection
CVE-2021-42740
CWE-77 High
No
No
- 20.09.2022 SB2021102139
SB2022092053
SB2022092054
and 9 more
#VU65835 - Incorrect Regular Expression
CVE-2022-31129
CWE-185 Medium
No
No
- 27.07.2022 SB2022072729
SB2022072901
SB2022081048
and 102 more
#VU65355 - Incorrect Regular Expression
CVE-2020-7753
CWE-185 Medium
No
No
- 15.07.2022 SB2020102724
SB2022071510
SB2023062230
and 12 more
#VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43815
CWE-22 Low
No
No
- 15.06.2022 SB2021121022
SB2022062026
SB2022102094
and 8 more
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
- 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
- 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
- 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more
#VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43798
CWE-22 High
Available
Exploited
- 08.12.2021 SB2021120803
SB2022062026
SB2022102094
and 7 more
#VU57967 - Improper input validation
CVE-2021-3807
CWE-20 Medium
No
No
- 05.11.2021 SB2021110513
SB2021112603
SB2022042257
and 51 more
#VU50139 - Incorrect Default Permissions
CVE-2020-8908
CWE-276 Low
No
No
- 11.12.2020 SB2020121114
SB2021031707
SB2021042104
and 62 more


Showing elements 21 - 40 out of 53