Known vulnerabilities in SUSE OpenStack Cloud 7 - page 2

Vendor: SUSE
Version: 7
Software CPE: cpe:2.3:o:suse:suse_openstack_cloud:*:*:*:*:*:*:*:*
Total vulnerabilities: 71
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE OpenStack Cloud version 7 SUSE OpenStack Cloud 7 is affected by 71 vulnerabilities: 11 high, 33 medium, 27 low Critical High Medium Low

Vulnerabilities (71)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93670 - Memory corruption
CVE-2021-26932
CWE-119 Low
No
No
- 02.07.2024 SB20240702105
SB2021030969
SB2021030970
and 14 more
#VU55968 - Resource Management Errors
CVE-2021-27803
CWE-399 Medium
No
No
- 18.08.2021 SB2021022708
SB2021081815
SB2021122905
and 15 more
#VU52035 - Use After Free
CVE-2021-3347
CWE-416 Low
No
No
- 12.04.2021 SB2021041207
SB2021041208
SB2021042133
and 42 more
#VU51664 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-23984
CWE-451 Medium
No
No
- 23.03.2021 SB2021032312
SB2021032313
SB2021032505
and 20 more
#VU51662 - Exposure of sensitive information to an unauthorized actor
CVE-2021-23982
CWE-200 Medium
No
No
- 23.03.2021 SB2021032312
SB2021032313
SB2021032505
and 20 more
#VU51456 - Integer overflow
CVE-2021-27219
CWE-190 Low
No
No
- 15.03.2021 SB2021021524
SB2021032305
SB2021053117
and 40 more
#VU51455 - Incorrect Conversion between Numeric Types
CVE-2021-27218
CWE-681 Low
No
No
- 15.03.2021 SB2021021523
SB2021032305
SB2021070711
and 25 more
#VU51337 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-21300
CWE-94 High
Public exploit available
Exploited
- 09.03.2021 SB2021030943
SB2021031217
SB2021031303
and 17 more
#VU50814 - Improper input validation
CVE-2021-23336
CWE-20 Medium
No
No
- 19.02.2021 SB2021021907
SB2021022001
SB2021022706
and 56 more
#VU50745 - Improper input validation
CVE-2021-23840
CWE-20 Medium
No
No
- 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 83 more
#VU50740 - NULL Pointer Dereference
CVE-2021-23841
CWE-476 Medium
No
No
- 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 66 more
#VU50040 - Heap-based Buffer Overflow
CVE-2021-3156
CWE-122 Low
Public exploit available
Exploited
- 26.01.2021 SB2021012632
SB2021012633
SB2021012634
and 55 more
#VU49197 - Integer overflow
CVE-2020-35738
CWE-190 High
No
No
- 28.12.2020 SB2020122917
SB2021011262
SB2021011424
and 9 more
#VU83583 - Use After Free
CVE-2020-27786
CWE-416 Low
Public exploit available
No
- 11.12.2020 SB2020121125
SB2021031734
SB2021031735
and 5 more
#VU28538 - Resource exhaustion
CVE-2020-11080
CWE-400 Medium
No
No
- 03.06.2020 SB2020060305
SB2020060607
SB2020060703
and 42 more
#VU30377 - Resource exhaustion
CVE-2016-1544
CWE-400 Low
No
No
- 06.02.2020 SB2020020624
SB2016120505
SB2022101929
and 4 more
#VU31958 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2019-18348
CWE-74 Medium
No
No
- 23.10.2019 SB2019102324
SB2020052312
SB2020042173
and 13 more
#VU20197 - Resource exhaustion
CVE-2019-9513
CWE-400 Medium
No
No
- 13.08.2019 SB2019081323
SB2019081326
SB2019081602
and 51 more
#VU20196 - Resource exhaustion
CVE-2019-9511
CWE-400 Medium
No
No
- 13.08.2019 SB2019081323
SB2019081326
SB2019081602
and 55 more
#VU11858 - NULL Pointer Dereference
CVE-2018-1000168
CWE-476 Low
No
No
- 17.04.2018 SB2018041213
SB2018071402
SB2018061331
and 4 more


Showing elements 21 - 40 out of 71