Skip to main content

Vendor archive

suse CVEs

Beta · best-effort

1,190 CVEs tagged to vendor suse245 Critical, 421 High, 419 Medium, 105 Low, 0 Unrated.

CVE-2022-31247

Published Sep 7, 2022

An Improper Authorization vulnerability in SUSE Rancher, allows any user who has permissions to create/edit cluster role template bindings or project role template bindings (such…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36783

Published Sep 7, 2022

A Insufficiently Protected Credentials vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners and Project Members to read credentials,…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36782

Published Sep 7, 2022

A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners, Project Members and User Base to u…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-4028

Published Aug 24, 2022

A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup a socket to listen on a high port allowing…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31248

Published Jun 22, 2022

A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to discover valid usernames. This iss…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-21952

Published Jun 22, 2022

A Missing Authentication for Critical Function vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to easily exhaust availa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-21951

Published May 25, 2022

A Cleartext Transmission of Sensitive Information vulnerability in SUSE Rancher, Rancher allows attackers on the network to read and change network data due to missing encryption…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-4200

Published May 2, 2022

A Improper Privilege Management vulnerability in SUSE Rancher allows write access to the Catalog for any user when restricted-admin role is enabled. This issue affects: SUSE Ranch…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36784

Published May 2, 2022

A Improper Privilege Management vulnerability in SUSE Rancher allows users with the restricted-admin role to escalate to full admin. This issue affects: SUSE Rancher Rancher versi…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36778

Published May 2, 2022

A Incorrect Authorization vulnerability in SUSE Rancher allows administrators of third-party repositories to gather credentials that are sent to their servers. This issue affects:…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2022-21947

Published Apr 1, 2022

A Exposure of Resource to Wrong Sphere vulnerability in Rancher Desktop of SUSE allows attackers in the local network to connect to the Dashboard API (steve) to carry out arbitrar…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32001

Published Jul 28, 2021

K3s in SUSE Rancher allows any user with direct access to the datastore, or a copy of a datastore backup, to extract the cluster's confidential keying material (cluster certificat…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 51-75 of 1,190 CVEsPage 3 of 48