Skip to main content

Vendor/product archive

suse / manager_server CVEs

Beta · best-effort

17 CVEs tagged to suse / manager_server3 Critical, 7 High, 5 Medium, 2 Low, 0 Unrated.

CVE-2023-22644

Published Sep 20, 2023

A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuV…

CVSS 9.4 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-43754

Published Nov 10, 2022

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in spacewalk/Uyuni of SUSE Linux Enterprise Module for SUSE Manager Server 4.…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-43753

Published Nov 10, 2022

A Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in spacewalk/Uyuni of SUSE Linux Enterprise Module for SUSE Manager Server 4.2, SUSE…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31255

Published Nov 10, 2022

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in spacewalk/Uyuni of SUSE Linux Enterprise Module for SUSE Manager Server 4.2, SUS…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31248

Published Jun 22, 2022

A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to discover valid usernames. This iss…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-21952

Published Jun 22, 2022

A Missing Authentication for Critical Function vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to easily exhaust availa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-17 of 17 CVEsPage 1 of 1