Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
suse studio onsite vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2013-3712
SUSE Studio Onsite 1.3.x prior to 1.3.6 and SUSE Studio Extension for System z 1.3 uses "static" secret tokens, which has unspecified impact and vectors.
Suse Studio Onsite 1.3.5
Suse Studio Onsite 1.3.2
Suse Studio Onsite 1.3
Suse Studio Onsite 1.3.1
Suse Studio Extension For System Z 1.3
Suse Studio Onsite 1.3.4
Suse Studio Onsite 1.3.3
9.3
CVSSv2
CVE-2011-2225
Unspecified vulnerability in Kiwi prior to 3.74.2, as used in SUSE Studio 1.1 prior to 1.1.4, allows malicious users to have an unknown impact via a crafted directory pathname that is inserted into config.sh.
Marcus Schafer Kiwi
Novell Suse Studio Onsite 1.1
7.5
CVSSv2
CVE-2014-9846
Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote malicious users to have unspecified impact.
Opensuse Project Suse Linux Enterprise Workstation Extension 12.0
Opensuse Project Leap 42.1
Opensuse Project Suse Linux Enterprise Server 12.0
Opensuse Project Suse Linux Enterprise Desktop 12.0
Opensuse Project Suse Linux Enterprise Debuginfo 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 12.0
Suse Studio Onsite 1.3
Opensuse Project Suse Linux Enterprise Server 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 11.0
Opensuse Leap 42.2
Opensuse Opensuse 13.2
Canonical Ubuntu Linux 16.10
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Imagemagick Imagemagick 6.8.8-9
7.5
CVSSv2
CVE-2014-9847
The jng decoder in ImageMagick 6.8.9.9 allows remote malicious users to have an unspecified impact.
Opensuse Project Suse Linux Enterprise Workstation Extension 12.0
Opensuse Project Leap 42.1
Opensuse Project Studio Onsite 1.3
Opensuse Project Suse Linux Enterprise Server 12.0
Opensuse Project Suse Linux Enterprise Desktop 12.0
Opensuse Project Suse Linux Enterprise Debuginfo 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 12.0
Opensuse Project Suse Linux Enterprise Server 11.0
Opensuse Project Suse Linux Enterprise Software Development Kit 11.0
Opensuse Opensuse 13.2
Canonical Ubuntu Linux 16.10
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Imagemagick Imagemagick 6.8.8-9
7.5
CVSSv2
CVE-2016-0718
Expat allows context-dependent malicious users to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.
Mozilla Firefox
Apple Mac Os X
Suse Linux Enterprise Server 11
Suse Studio Onsite 1.3
Suse Linux Enterprise Software Development Kit 11
Suse Linux Enterprise Debuginfo 11
Opensuse Leap 42.1
Suse Linux Enterprise Software Development Kit 12
Suse Linux Enterprise Server 12
Suse Linux Enterprise Desktop 12
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Libexpat Project Libexpat
Debian Debian Linux 8.0
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Mcafee Policy Auditor
Python Python
1 Article
7.5
CVSSv2
CVE-2011-4192
kiwi prior to 4.85.1, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands as demonstrated by "double quotes in kiwi_oemtitle of .profile."
Suse Studio Extension For System Z 1.2
Suse Kiwi
Suse Studio Onsite 1.2
7.5
CVSSv2
CVE-2011-4195
kiwi prior to 4.98.05, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands via shell metacharacters in an image name.
Suse Studio Extension For System Z 1.2
Suse Studio Onsite 1.2
Suse Kiwi
7.5
CVSSv2
CVE-2011-3180
kiwi prior to 4.98.08, as used in SUSE Studio Onsite 1.2 prior to 1.2.1 and SUSE Studio Extension for System z 1.2 prior to 1.2.1, allows malicious users to execute arbitrary commands via shell metacharacters in the path of an overlay file, related to chown.
Suse Studio Extension For System Z 1.2
Suse Studio Onsite 1.2
Suse Kiwi
7.5
CVSSv2
CVE-2013-4547
nginx 0.8.41 up to and including 1.4.3 and 1.5.x prior to 1.5.7 allows remote malicious users to bypass intended restrictions via an unescaped space character in a URI.
F5 Nginx
Opensuse Opensuse 12.3
Suse Studio Onsite 1.3
Opensuse Opensuse 11.4
Suse Webyast 1.3
Opensuse Opensuse 12.2
Opensuse Opensuse 13.1
Suse Lifecycle Management Server 1.3
1 EDB exploit
1 Github repository
7.5
CVSSv2
CVE-2011-2647
Unspecified vulnerability in Kiwi prior to 3.74.2, as used in SUSE Studio 1.1 prior to 1.1.4, allows remote malicious users to execute arbitrary code via a crafted archive name in the list of testdrive modified files.
Marcus Schafer Kiwi
Novell Suse Studio Onsite 1.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »