Known vulnerabilities in SUSE Package Hub for SUSE Linux Enterprise - page 6

Vendor: SUSE
Software CPE: cpe:2.3:a:suse:suse_package_hub_for_suse_linux_enterprise:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 204
Public exploits: 20
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Package Hub for SUSE Linux Enterprise SUSE Package Hub for SUSE Linux Enterprise is affected by 204 known vulnerabilities: 2 critical, 83 high, 57 medium, 62 low Critical High Medium Low

Vulnerabilities (204)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU23562 - Improper input validation
CVE-2019-11729
CWE-20 Medium
No
No
- 12.12.2019 SB2019062813
SB2019121210
SB2020031903
and 11 more
#VU32013 - Resource exhaustion
CVE-2019-10203
CWE-400 Low
No
No
- 22.11.2019 SB2019112226
SB2019081540
SB2019081542
and 2 more
#VU19947 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-14744
CWE-78 High
No
No
- 07.08.2019 SB2019080609
SB2019080808
SB2019081004
and 18 more
#VU33440 - Improper Authorization
CVE-2019-10162
CWE-285 Medium
No
No
- 31.07.2019 SB2019081540
SB2019081542
SB2019081543
and 1 more
#VU33441 - Resource exhaustion
CVE-2019-10163
CWE-400 Low
No
No
- 31.07.2019 SB2019081540
SB2019081542
SB2019081543
and 1 more
#VU33399 - Permissions, Privileges, and Access Controls
CVE-2019-9811
CWE-264 High
No
No
- 23.07.2019 SB2019082322
SB2019073024
SB2019072928
and 12 more
#VU33439 - Exposure of sensitive information to an unauthorized actor
CVE-2019-11730
CWE-200 Medium
No
No
- 23.07.2019 SB2019082322
SB2019073024
SB2019072928
and 12 more
#VU18945 - Use After Free
CVE-2019-13045
CWE-416 Low
No
No
- 01.07.2019 SB2019070101
SB2019070102
SB2019070201
and 5 more
#VU18682 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2019-11768
CWE-89 Low
No
No
- 05.06.2019 SB2019050613
SB2019070212
SB2019070214
and 5 more
#VU18679 - Cross-Site Request Forgery (CSRF)
CVE-2019-12616
CWE-352 Medium
Available
No
- 05.06.2019 SB2019060501
SB2019070212
SB2019070214
and 5 more
#VU18563 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2019-11698
CWE-451 Low
No
No
- 22.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18559 - Missing release of memory after effective lifetime
CVE-2019-11694
CWE-401 Low
No
No
- 21.05.2019 SB2019052103
SB2019052104
SB2019052204
and 5 more
#VU18558 - Memory corruption
CVE-2019-11693
CWE-119 High
No
No
- 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18557 - Use After Free
CVE-2019-11692
CWE-416 High
No
No
- 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18556 - Use After Free
CVE-2019-11691
CWE-416 High
No
No
- 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU17654 - Permissions, Privileges, and Access Controls
CVE-2018-18511
CWE-264 Low
No
No
- 13.02.2019 SB2019021322
SB2019021408
SB2019022701
and 16 more
#VU33178 - Improper input validation
CVE-2018-20743
CWE-20 Medium
No
No
- 25.01.2019 SB2019012520
SB2020012940
SB2019081439
and 3 more
#VU16546 - Improper input validation
CVE-2018-16875
CWE-20 Low
No
No
- 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more
#VU16545 - Command injection
CVE-2018-16873
CWE-77 High
No
No
- 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more
#VU16544 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-16874
CWE-22 High
No
No
- 14.12.2018 SB2018121408
SB2018121704
SB2018121808
and 22 more


Showing elements 101 - 120 out of 204