Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
studio onsite vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2013-3712
SUSE Studio Onsite 1.3.x prior to 1.3.6 and SUSE Studio Extension for System z 1.3 uses "static" secret tokens, which has unspecified impact and vectors.
Suse Studio Onsite 1.3
Suse Studio Onsite 1.3.1
Suse Studio Onsite 1.3.3
Suse Studio Onsite 1.3.5
Suse Studio Onsite 1.3.2
Suse Studio Onsite 1.3.4
Suse Studio Extension For System Z 1.3
9.3
CVSSv2
CVE-2011-2225
Unspecified vulnerability in Kiwi prior to 3.74.2, as used in SUSE Studio 1.1 prior to 1.1.4, allows malicious users to have an unknown impact via a crafted directory pathname that is inserted into config.sh.
Marcus Schafer Kiwi
Novell Suse Studio Onsite 1.1
7.5
CVSSv2
CVE-2014-9847
The jng decoder in ImageMagick 6.8.9.9 allows remote malicious users to have an unspecified impact.
Opensuse Opensuse 13.2
Opensuse Project Suse Linux Enterprise Desktop 12.0
Opensuse Project Suse Linux Enterprise Server 12.0
Opensuse Project Studio Onsite 1.3
Opensuse Project Suse Linux Enterprise Software Development Kit 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 12.0
Opensuse Project Suse Linux Enterprise Debuginfo 11.0
Opensuse Project Suse Linux Enterprise Server 11.0
Opensuse Project Suse Linux Enterprise Workstation Extension 12.0
Opensuse Project Leap 42.1
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 16.10
Imagemagick Imagemagick 6.8.8-9
7.5
CVSSv2
CVE-2014-9846
Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote malicious users to have unspecified impact.
Opensuse Project Suse Linux Enterprise Desktop 12.0
Suse Studio Onsite 1.3
Opensuse Project Suse Linux Enterprise Server 12.0
Opensuse Project Suse Linux Enterprise Software Development Kit 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 12.0
Opensuse Project Suse Linux Enterprise Workstation Extension 12.0
Opensuse Project Suse Linux Enterprise Debuginfo 11.0
Opensuse Project Suse Linux Enterprise Server 11.0
Opensuse Leap 42.2
Opensuse Project Leap 42.1
Opensuse Opensuse 13.2
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.10
Imagemagick Imagemagick 6.8.8-9
7.5
CVSSv2
CVE-2016-0718
Expat allows context-dependent malicious users to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.
Mozilla Firefox
Apple Mac Os X
Suse Linux Enterprise Server 11
Suse Studio Onsite 1.3
Suse Linux Enterprise Software Development Kit 11
Suse Linux Enterprise Debuginfo 11
Opensuse Leap 42.1
Suse Linux Enterprise Software Development Kit 12
Suse Linux Enterprise Server 12
Suse Linux Enterprise Desktop 12
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Libexpat Project Libexpat
Debian Debian Linux 8.0
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Mcafee Policy Auditor
Python Python
1 Article
7.5
CVSSv2
CVE-2011-4195
kiwi prior to 4.98.05, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands via shell metacharacters in an image name.
Suse Studio Extension For System Z 1.2
Suse Kiwi
Suse Studio Onsite 1.2
7.5
CVSSv2
CVE-2011-3180
kiwi prior to 4.98.08, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands via shell metacharacters in the path of an overlay file, related to chown.
Suse Kiwi
Suse Studio Onsite 1.2
Suse Studio Extension For System Z 1.2
7.5
CVSSv2
CVE-2011-4192
kiwi prior to 4.85.1, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands as demonstrated by "double quotes in kiwi_oemtitle of .profile."
Suse Kiwi
Suse Studio Extension For System Z 1.2
Suse Studio Onsite 1.2
7.5
CVSSv2
CVE-2013-4547
nginx 0.8.41 up to and including 1.4.3 and 1.5.x prior to 1.5.7 allows remote malicious users to bypass intended restrictions via an unescaped space character in a URI.
F5 Nginx
Suse Lifecycle Management Server 1.3
Suse Studio Onsite 1.3
Suse Webyast 1.3
Opensuse Opensuse 11.4
Opensuse Opensuse 12.2
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
1 EDB exploit
1 Github repository
7.5
CVSSv2
CVE-2011-2645
Unspecified vulnerability in Kiwi prior to 3.74.2, as used in SUSE Studio 1.1 prior to 1.1.4, allows remote malicious users to execute arbitrary code via a crafted filename for a custom RPM.
Novell Suse Studio Onsite 1.1
Marcus Schafer Kiwi
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27975
CVE-2024-2961
CVE-2024-20380
XML injection
HTML injection
CVE-2024-29204
CVE-2023-51795
memory leak
CVE-2024-3470
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »