<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 20:29:28 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-46811 — SUSE Multi Linux Manager allows code execution via unprotected websocket endpoint</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-46811</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; SUSE Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE, SUSE Manager Server Module 4.3&lt;/p&gt;
&lt;p&gt;A Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able to run any command as root on any client. This issue affects Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.27-150600.3.33.1; Image SLES15-SP4-Manager-Server-4-3-BYOS: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE: from ? before 4.3.87-150400.3.110.2; SUSE Manager Server Module 4.3: from ? before 4.3.87-150400.3.110.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; SUSE Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2, SUSE Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE, SUSE Manager Server Module 4.3&lt;/p&gt;
&lt;p&gt;A Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able to run any command as root on any client. This issue affects Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.27-150600.3.33.1; Image SLES15-SP4-Manager-Server-4-3-BYOS: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE: from ? before 4.3.87-150400.3.110.2; SUSE Manager Server Module 4.3: from ? before 4.3.87-150400.3.110.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-46811</guid>
    </item>
  </channel>
</rss>
