Known vulnerabilities in SUSE OpenStack Cloud Crowbar - page 38

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_openstack_cloud_crowbar:*:*:*:*:*:*:*:*
Total vulnerabilities: 1656
Public exploits: 70
Known exploited (KEV): 27
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE OpenStack Cloud Crowbar SUSE OpenStack Cloud Crowbar is affected by 1656 known vulnerabilities: 18 critical, 414 high, 550 medium, 674 low Critical High Medium Low

Vulnerabilities (1656)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68860 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-31163
CWE-22 Medium
No
No
- 31.10.2022 SB2022103147
SB2022103161
SB2022072942
and 6 more
#VU66591 - Out-of-bounds read
CVE-2022-1462
CWE-125 Low
No
No
- 17.08.2022 SB2022081737
SB2022081739
SB2022081740
and 49 more
#VU66590 - Out-of-bounds write
CVE-2021-33656
CWE-787 Low
No
No
- 17.08.2022 SB2022081736
SB2022081739
SB2022081740
and 48 more
#VU65833 - Out-of-bounds write
CVE-2021-33655
CWE-787 Low
No
No
- 27.07.2022 SB2022072725
SB2022072814
SB2022081739
and 77 more
#VU65824 - Missing release of memory after effective lifetime
CVE-2022-32742
CWE-401 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 36 more
#VU65553 - Out-of-bounds read
CVE-2022-1587
CWE-125 Medium
No
No
- 20.07.2022 SB2022060210
SB20220720108
SB2022072733
and 24 more
#VU65495 - Improper input validation
CVE-2022-34169
CWE-20 High
Available
No
- 20.07.2022 SB2022072046
SB2022072047
SB2022072140
and 137 more
#VU65496 - Improper input validation
CVE-2022-21541
CWE-20 Medium
No
No
- 20.07.2022 SB2022072046
SB2022072047
SB2022072140
and 105 more
#VU65497 - Improper input validation
CVE-2022-21540
CWE-20 Medium
No
No
- 20.07.2022 SB2022072046
SB2022072047
SB2022072140
and 105 more
#VU65219 - Type confusion
CVE-2022-23816
CWE-843 Low
No
No
- 12.07.2022 SB2022071264
SB2022071302
SB2022071617
and 39 more
#VU65204 - Type confusion
CVE-2022-23825
CWE-843 Low
No
No
- 12.07.2022 SB2022071249
SB2022071256
SB2022071302
and 39 more
#VU65119 - Permissions, Privileges, and Access Controls
CVE-2022-30550
CWE-264 Medium
No
No
- 11.07.2022 SB2022071169
SB2022071171
SB2022071911
and 10 more
#VU64685 - Improper Verification of Cryptographic Signature
CVE-2022-32208
CWE-347 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 73 more
#VU64682 - Resource exhaustion
CVE-2022-32206
CWE-400 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 80 more
#VU64364 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21123
CWE-200 Low
No
No
- 14.06.2022 SB2022061454
SB2022061465
SB2022061463
and 97 more
#VU64365 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21125
CWE-200 Low
No
No
- 14.06.2022 SB2022061454
SB2022061467
SB2022061463
and 96 more
#VU64366 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21166
CWE-200 Low
No
No
- 14.06.2022 SB2022061454
SB2022061466
SB2022061463
and 102 more
#VU63009 - Incorrect Implementation of Authentication Algorithm
CVE-2022-27782
CWE-303 Medium
No
No
- 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 68 more
#VU63008 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-27781
CWE-835 Medium
No
No
- 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 36 more
#VU26356 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-10109
CWE-444 Medium
No
No
- 24.03.2020 SB2020031234
SB2020032419
SB2020043028
and 8 more


Showing elements 741 - 760 out of 1656