Known vulnerabilities in Web and Scripting Module - page 8

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:web_and_scripting_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 190
Public exploits: 17
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Web and Scripting Module Web and Scripting Module is affected by 190 known vulnerabilities: 2 critical, 17 high, 126 medium, 45 low Critical High Medium Low

Vulnerabilities (190)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86733 - Improper input validation
CVE-2024-22025
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 34 more
#VU86709 - Exposure of sensitive information to an unauthorized actor
CVE-2024-24758
CWE-200 Low
No
No
- 22.02.2024 SB2024022211
SB2024022225
SB2024022832
and 13 more
#VU86707 - Server-Side Request Forgery (SSRF)
CVE-2024-24806
CWE-918 Medium
No
No
- 22.02.2024 SB2024022210
SB2024022214
SB2024022225
and 54 more
#VU86574 - Incorrect Default Permissions
CVE-2024-22029
CWE-276 Low
No
No
- 19.02.2024 SB2024021927
SB2024021928
#VU86276 - Incorrect Default Permissions
CVE-2024-24821
CWE-276 Low
No
No
- 08.02.2024 SB2024020870
SB2024021508
SB2024022241
and 3 more
#VU83533 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-46589
CWE-444 Medium
No
No
- 28.11.2023 SB2023112846
SB2023121851
SB2023122831
and 78 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
- 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more
#VU82070 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-39333
CWE-94 Low
No
No
- 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 28 more
#VU82069 - Improper Validation of Integrity Check Value
CVE-2023-38552
CWE-354 Medium
No
No
- 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 34 more
#VU82066 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45143
CWE-200 Medium
No
No
- 17.10.2023 SB2023101702
SB2023101703
SB2023101801
and 31 more
#VU81803 - Exposed Dangerous Method or Function
CVE-2023-42794
CWE-749 Medium
No
No
- 10.10.2023 SB2023101084
SB2023101286
SB2023111528
and 22 more
#VU81800 - Resource Management Errors
CVE-2023-42795
CWE-399 Medium
No
No
- 10.10.2023 SB2023101084
SB2023101122
SB2023101123
and 47 more
#VU81799 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-45648
CWE-444 Medium
No
No
- 10.10.2023 SB2023101084
SB2023101122
SB2023101123
and 47 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
- 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU81296 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-43655
CWE-94 High
No
No
- 29.09.2023 SB2023092947
SB2023092956
SB2023092957
and 13 more
#VU80585 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41105
CWE-22 Low
No
No
- 11.09.2023 SB2023082825
SB2023100328
SB2023100362
and 18 more
#VU80228 - Cleartext Transmission of Sensitive Information
CVE-2023-40217
CWE-319 Medium
No
No
- 01.09.2023 SB2023090142
SB2023090143
SB2023090144
and 139 more
#VU80089 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-41080
CWE-601 Medium
Available
No
- 29.08.2023 SB2023082924
SB2023100565
SB2023101122
and 51 more
#VU78978 - Memory corruption
CVE-2023-3824
CWE-119 Critical
Available
Exploited
- 06.08.2023 SB2023080604
SB2023081704
SB20230821142
and 32 more
#VU78977 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-3823
CWE-611 High
No
No
- 06.08.2023 SB2023080604
SB2023081704
SB20230821142
and 31 more


Showing elements 141 - 160 out of 190