SUSE Vulnerabilities and Affected Products
Vulnerabilities associated with Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure.
Products
Clear product- Rancher67 vulnerabilities
- SUSE Linux Enterprise Server 1513 vulnerabilities
- SUSE Linux Enterprise Server 1212 vulnerabilities
- openSUSE Tumbleweed11 vulnerabilities
- neuvector10 vulnerabilities
- SUSE Linux Enterprise Server for SAP 158 vulnerabilities
- libzypp7 vulnerabilities
- SUSE Linux Enterprise Server 15-LTSS7 vulnerabilities
- SUSE Manager Server Module 4.37 vulnerabilities
- open build service5 vulnerabilities
- openSUSE Factory5 vulnerabilities
- supportutils5 vulnerabilities
- SUSE Linux Enterprise Software Development Kit 12-SP45 vulnerabilities
- SUSE Linux Enterprise Software Development Kit 12-SP55 vulnerabilities
- SUSE Manager Server 4.25 vulnerabilities
- openSUSE Leap 15.54 vulnerabilities
- SUSE Linux Enterprise Server 114 vulnerabilities
- SUSE Linux Enterprise Server 11-SP4-LTSS4 vulnerabilities
- SUSE Linux Enterprise Server 12-SP54 vulnerabilities
- SUSE Linux Enterprise Server for SAP Applications 15 SP64 vulnerabilities
- SUSE Manager Server 4.04 vulnerabilities
- SUSE OpenStack Cloud 84 vulnerabilities
- harvester3 vulnerabilities
- opensuse_tumbleweed3 vulnerabilities
- SUSE Linux Enterprise High Performance Computing 15 SP53 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-46809MEDIUM | Multi Linux Manager epxoses the plain text HTTP Proxy user:password in logsA Plaintext Storage of a Password vulnerability in SUSE exposes the credentials for the HTTP proxy in the log files. This issue affects Container suse/manager/4.3/proxy-httpd:4.3.16.9.67.1: from ? before 4.3.33-150400.3.55.2; Container suse/manager/5.0/x86_64/proxy-httpd:5.0.5.7.23.1: from ? before 5.0.14-150600.4.17.1; Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.14-150600.4.17.1; Image SLES15-SP4-Manager-Proxy-4-3-BYOS: from ? before 4.3.33-150400.3.55.2; Image SLES… | CVSS6.9v4.0 | EPSS0.233% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-46811CRITICAL | SUSE Multi Linux Manager allows code execution via unprotected websocket endpointA Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able to run any command as root on any client. This issue affects Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.27-150600.3.33.1; Image SLES15-SP4-Manager-Server-4-3-BYOS: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2: … | CVSS9.3v4.0 | EPSS10.4% | PoCs3 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |