Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able to run any command as root on any client. This issue affects Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.27-150600.3.33.1; Image SLES15-SP4-Manager-Server-4-3-BYOS: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE: from ? before 4.3.87-150400.3.110.2; SUSE Manager Server Module 4.3: from ? before 4.3.87-150400.3.110.2.
| Link | Resource |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-46811 |
No configuration.
03 Sep 2025, 07:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-07-30 15:15
Updated : 2025-09-03 07:15
NVD link : CVE-2025-46811
Mitre link : CVE-2025-46811
CVE.ORG link : CVE-2025-46811
JSON object : View
No product.
Missing Authorization