Known vulnerabilities in Server Applications Module 15-SP6

Vendor: SUSE
Version: 15-SP6
Software CPE: cpe:2.3:o:suse:server_applications_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 210
Public exploits: 19
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Server Applications Module version 15-SP6 Server Applications Module 15-SP6 is affected by 210 vulnerabilities: 3 critical, 10 high, 125 medium, 72 low Critical High Medium Low

Vulnerabilities (210)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU121008 - Insecure Automated Optimizations
CVE-2023-52971
CWE-1038 Low
No
No
- 07.01.2026 SB2025122915
SB2026010703
SB2026010704
and 5 more
#VU120623 - Insecure Automated Optimizations
CVE-2023-52970
CWE-1038 Low
No
No
- 29.12.2025 SB2025122915
SB2025122918
SB2025122926
and 12 more
#VU120622 - Insecure Automated Optimizations
CVE-2023-52969
CWE-1038 Low
No
No
- 29.12.2025 SB2025122915
SB2025122918
SB2025122920
and 16 more
#VU120229 - Improper Authentication
CVE-2025-62349
CWE-287 Low
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU120228 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-62348
CWE-94 Medium
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU120191 - Improper input validation
CVE-2024-12224
CWE-20 Medium
No
No
- 18.12.2025 SB2025121849
SB2025121856
SB2025121857
and 22 more
#VU118730 - Use After Free
CVE-2025-54770
CWE-416 Low
No
No
- 24.11.2025 SB2025112110
SB2025112476
SB2025112845
and 4 more
#VU118668 - Use After Free
CVE-2025-61664
CWE-416 Low
No
No
- 21.11.2025 SB2025112110
SB2025112111
SB2025112122
and 11 more
#VU118667 - Use After Free
CVE-2025-61663
CWE-416 Low
No
No
- 21.11.2025 SB2025112110
SB2025112111
SB2025112122
and 10 more
#VU118665 - Use After Free
CVE-2025-61662
CWE-416 Low
No
No
- 21.11.2025 SB2025112110
SB2025112111
SB2025112122
and 28 more
#VU118663 - Out-of-bounds write
CVE-2025-61661
CWE-787 Low
No
No
- 21.11.2025 SB2025112110
SB2025112111
SB2025112122
and 10 more
#VU118662 - Use After Free
CVE-2025-54771
CWE-416 Low
No
No
- 21.11.2025 SB2025112110
SB2025112111
SB2025112122
and 10 more
#VU118520 - Integer overflow
CVE-2025-12818
CWE-190 Medium
No
No
- 13.11.2025 SB2025111368
SB2025112204
SB2025112205
and 64 more
#VU118519 - Missing Authorization
CVE-2025-12817
CWE-862 Low
No
No
- 13.11.2025 SB2025111368
SB2025112204
SB2025112205
and 48 more
#VU117653 - Permissions, Privileges, and Access Controls
CVE-2025-58149
CWE-264 Low
No
No
- 24.10.2025 SB2025102474
SB20251024128
SB2025102501
and 8 more
#VU117610 - Insufficient Verification of Data Authenticity
CVE-2025-40778
CWE-345 Medium
Public exploit available
No
- 23.10.2025 SB2025102373
SB2025102393
SB20251023133
and 60 more
#VU117604 - Predictable Seed in Pseudo-Random Number Generator (PRNG)
CVE-2025-40780
CWE-337 Medium
No
No
- 23.10.2025 SB2025102373
SB2025102393
SB20251023133
and 41 more
#VU117577 - Resource exhaustion
CVE-2025-8677
CWE-400 Medium
No
No
- 23.10.2025 SB2025102373
SB2025102393
SB20251023133
and 28 more
#VU107533 - Improper input validation
CVE-2025-30722
CWE-20 Medium
No
No
- 16.04.2025 SB20250416139
SB20250416141
SB2025042536
and 18 more
#VU107534 - Improper input validation
CVE-2025-30693
CWE-20 Medium
No
No
- 16.04.2025 SB20250416139
SB20250416141
SB2025042536
and 18 more


Showing elements 1 - 20 out of 210