Novell Suse Studio Onsite vulnerabilities
12 known vulnerabilities affecting novell/suse_studio_onsite.
Total CVEs
12
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH6MEDIUM5
Vulnerabilities
Page 1 of 1
CVE-2013-4589MEDIUMCVSS 4.3v1.32013-11-23
CVE-2013-4589 [MEDIUM] CVE-2013-4589: The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote a
The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bit RGBA image.
nvd
CVE-2011-2225CRITICALCVSS 9.3v1.12011-08-23
CVE-2011-2225 [CRITICAL] CVE-2011-2225: Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows att
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to have an unknown impact via a crafted directory pathname that is inserted into config.sh.
nvd
CVE-2011-2647HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2647 [HIGH] CVE-2011-2647: Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows rem
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted archive name in the list of testdrive modified files.
nvd
CVE-2011-2651HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2651 [HIGH] CVE-2011-2651: Unspecified vulnerability in the file browser in Kiwi before 3.74.2, as used in SUSE Studio 1.1 befo
Unspecified vulnerability in the file browser in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename.
nvd
CVE-2011-2646HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2646 [HIGH] CVE-2011-2646: Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows rem
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename in the list of testdrive modified files.
nvd
CVE-2011-2648HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2648 [HIGH] CVE-2011-2648: Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows rem
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a filter in a modified file.
nvd
CVE-2011-2645HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2645 [HIGH] CVE-2011-2645: Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows rem
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename for a custom RPM.
nvd
CVE-2011-2649HIGHCVSS 7.5v1.12011-08-23
CVE-2011-2649 [HIGH] CWE-20 CVE-2011-2649: Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary c
Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary commands via shell metacharacters in an unspecified FileUtils function call.
nvd
CVE-2011-2652MEDIUMCVSS 4.3v1.12011-08-23
CVE-2011-2652 [MEDIUM] CWE-79 CVE-2011-2652: Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted archive file list that is used in an overlay file.
nvd
CVE-2011-2644MEDIUMCVSS 4.3v1.12011-08-23
CVE-2011-2644 [MEDIUM] CWE-79 CVE-2011-2644: Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to an RPM info display.
nvd
CVE-2011-2226MEDIUMCVSS 4.3v1.12011-08-23
CVE-2011-2226 [MEDIUM] CWE-79 CVE-2011-2226: Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a pattern listing.
nvd
CVE-2011-2650MEDIUMCVSS 4.3v1.12011-08-23
CVE-2011-2650 [MEDIUM] CWE-79 CVE-2011-2650: Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted pattern name that is included in an RPM info display.
nvd