CVE-2022-31248
Published on: Not Yet Published
Last Modified on: 06/22/2022 12:33:00 PM UTC
CVE-2022-31248 - advisory for https://bugzilla.suse.com/show_bug.cgi?id=1199629
Source: Mitre Source: Nist Print: PDF
Certain versions of SUSE Manager Server 4.1 from SUSE contain the following vulnerability:
A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to discover valid usernames. This issue affects: SUSE Manager Server 4.1 spacewalk-java versions prior to 4.1.46-1. SUSE Manager Server 4.2 spacewalk-java versions prior to 4.2.37-1.
- CVE-2022-31248 has been assigned by
[email protected] to track the vulnerability
- Affected Vendor/Software:
SUSE - SUSE Manager Server 4.1 version < 4.1.46-1
- Affected Vendor/Software:
SUSE - SUSE Manager Server 4.2 version < 4.2.37-1
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Bug 1199629 – VUL-0: CVE-2022-31248: SUMA user enumeration via weak error message | bugzilla.suse.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Software
Vendor | Product | Version |
---|---|---|
SUSE | SUSE_Manager_Server_4.1 | < 4.1.46-1 |
SUSE | SUSE_Manager_Server_4.2 | < 4.2.37-1 |
Discovery Credit
Paolo Perego from SUSE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-31248 : A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE… twitter.com/i/web/status/1… | 2022-06-22 10:09:14 |
![]() |
New Vulnerability: CVE-2022-31248 #InceptusSecure #UnderOurProtection | 2022-06-22 12:18:57 |
![]() |
CVE-2022-31248 | 2022-06-22 10:38:06 |