VendorsNovellsuse_lifecycle_management_serverany version
Vulnerabilities

Novell SUSE Lifecycle Management Server (SLMS) any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2013-7042
SUSE Lifecycle Management Server (SLMS) before 1.3.7 uses world-readable permissions for the secret keys, which allows local users to gain privileges via unspecified vectors.
Published 2013-12-10 · Modified
4.6EPSS 0.003
CVE-2013-3710
SUSE Lifecycle Management Server (SLMS) before 1.3.7 does not generate a new secret key when the service starts, which allows remote attackers to defeat intended cryptographic protection mechanisms by leveraging knowledge of this key from a product installation elsewhere.
Published 2013-12-10 · Modified
4.3EPSS 0.013
CVE-2011-0993
SUSE Lifecycle Management Server before 1.1 uses world readable postgres credentials, which allows local users to obtain sensitive information via unspecified vectors.
Published 2014-04-16 · Modified
2.1EPSS 0.004