suse

1,208 tracked vulnerabilities.

CVE-2019-3700 LOW
yast2-security < 4.2.6 - Use of Weak DES Password Encryption
Jan 24, 2020
CVSS 2.9
EPSS 0.00
CVE-2019-3694 HIGH
munin < 2.0.49-4.2 - Local Privilege Escalation via Symlink Following
Jan 24, 2020
CVSS 7.7
EPSS 0.00
CVE-2019-3693 HIGH
SUSE mailman < 2.1.15-9.6.15.1 - Privilege Escalation via Symlink Following
Jan 24, 2020
CVSS 7.7
EPSS 0.00
CVE-2019-3692 HIGH
inn < 2.4.2-170.21.3.1 - Local Privilege Escalation via Symlink Attack
Jan 24, 2020
CVSS 7.7
EPSS 0.00
CVE-2019-3687 MEDIUM
SUSE Linux Enterprise Server - Incorrect Default Permissions for dumpcap in Easy Permission Profile
Jan 24, 2020
CVSS 4.0
EPSS 0.00
CVE-2019-18898 HIGH
SUSE Linux Enterprise Server 15 SP1, openSUSE Factory - Privilege E...
Jan 23, 2020
CVSS 7.7
EPSS 0.00
CVE-2019-3686 MEDIUM
openQA < 2019-07-22 - Cross-Site Scripting via Distri and Version Parameters
Jan 17, 2020
CVSS 6.5
EPSS 0.00
CVE-2019-3683 HIGH
SUSE OpenStack Cloud keystone-json-assignment < 2019-02-18 - Incorrect Permission Assignment via User-Project Mapping
Jan 17, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-3682 HIGH
SUSE CaaS Platform 3.0 - Exposure of Resource to Wrong Sphere via Insecure Docker API
Jan 17, 2020
CVSS 8.4
EPSS 0.00
CVE-2019-19925 HIGH
SQLite 3.30.1 - Unrestricted Upload of File with Dangerous Type via zipfileUpdate
Dec 24, 2019
CVSS 7.5
EPSS 0.07
CVE-2019-19923 HIGH
SQLite 3.30.1 - NULL Pointer Dereference in flattenSubquery
Dec 24, 2019
CVSS 7.5
EPSS 0.06
CVE-2019-19926 HIGH
SQLite 3.30.1 - NULL Pointer Dereference in select.c multiSelect
Dec 23, 2019
CVSS 7.5
EPSS 0.08
CVE-2019-19880 HIGH
SQLite 3.30.1 - NULL Pointer Dereference in Window Function ORDER BY Clause
Dec 18, 2019
CVSS 7.5
EPSS 0.08
CVE-2019-13764 HIGH
Google Chrome <79.0.3945.79 - Heap Corruption
Dec 10, 2019
CVSS 8.8
EPSS 0.40
CVE-2019-13745 MEDIUM
Google Chrome <79.0.3945.79 - Info Disclosure
Dec 10, 2019
CVSS 6.5
EPSS 0.02
CVE-2019-13734 HIGH
Google Chrome <79.0.3945.79 - Heap Corruption
Dec 10, 2019
CVSS 8.8
EPSS 0.05
CVE-2019-3688 MEDIUM
SUSE Linux Enterprise Server squid - Incorrect Default Permissions in /usr/sbin/pinger
Oct 07, 2019
CVSS 5.1
EPSS 0.00
CVE-2019-13209 MEDIUM
Rancher 2.0.0-2.2.4 - Cross-Site Websocket Hijacking
Sep 04, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-11202 CRITICAL
Rancher 2.0.0-2.0.13, 2.1.0-2.1.8, 2.2.0-2.2.1 - Unauthenticated Default Admin Account Recreation
Jul 30, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-11730 MEDIUM
Firefox < 68.0 and Firefox ESR < 60.8 - Unauthenticated Local File Access via File URI
Jul 23, 2019
CVSS 6.5
EPSS 0.19
CVE-2019-11709 CRITICAL
Mozilla Firefox <68 - Memory Corruption
Jul 23, 2019
CVSS 9.8
EPSS 0.03
CVE-2019-11038 MEDIUM
libgd - Information Disclosure via Uninitialized Variable in gdImageCreateFromXbm
Jun 19, 2019
CVSS 5.3
EPSS 0.11
CVE-2019-11881 MEDIUM
Rancher < 2.2.4 - Cross-Site Scripting via Login Error Message
Jun 10, 2019
CVSS 4.7
EPSS 0.05
CVE-2019-12303 HIGH
Rancher 2.0.0-2.2.3 - Authenticated Command Injection via Fluentd Configuration
Jun 06, 2019
CVSS 8.8
EPSS 0.01
CVE-2019-12274 HIGH
Rancher 1-2.2.3 - Privilege Escalation
Jun 06, 2019
CVSS 8.8
EPSS 0.00