marcus_schafer CVE Vulnerabilities & CVE List (11)

Products (CPE): — CVEs: 11

marcus_schafer vulnerability overview

Aggregates CVE and security vulnerability intelligence across all marcus_schafer-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk input validation and related problems; some flaws may lead to vendor impact session compromise and vendor impact unexpected behavior.

Vulnerability distribution trend (last 24 months)

Showing 111 of 11 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2011-2652 Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted archive file list that is used in an overlay file. [email protected] 4.3 0.29% 2011-08-23 2026-04-29
CVE-2011-2651 Unspecified vulnerability in the file browser in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename. [email protected] 7.5 2.15% 2011-08-23 2026-04-29
CVE-2011-2650 Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted pattern name that is included in an RPM info display. [email protected] 4.3 0.29% 2011-08-23 2026-04-29
CVE-2011-2649 Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary commands via shell metacharacters in an unspecified FileUtils function call. [email protected] 7.5 0.43% 2011-08-23 2026-04-29
CVE-2011-2648 Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a filter in a modified file. [email protected] 7.5 2.73% 2011-08-23 2026-04-29
CVE-2011-2647 Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted archive name in the list of testdrive modified files. [email protected] 7.5 2.73% 2011-08-23 2026-04-29
CVE-2011-2646 Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename in the list of testdrive modified files. [email protected] 7.5 2.73% 2011-08-23 2026-04-29
CVE-2011-2645 Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename for a custom RPM. [email protected] 7.5 2.73% 2011-08-23 2026-04-29
CVE-2011-2644 Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to an RPM info display. [email protected] 4.3 0.29% 2011-08-23 2026-04-29
CVE-2011-2226 Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a pattern listing. [email protected] 4.3 0.12% 2011-08-23 2026-04-29
CVE-2011-2225 Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to have an unknown impact via a crafted directory pathname that is inserted into config.sh. [email protected] 9.3 0.22% 2011-08-23 2026-04-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence