Known vulnerabilities in Server Applications Module 15-SP7 - page 15

Vendor: SUSE
Version: 15-SP7
Software CPE: cpe:2.3:o:suse:server_applications_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 316
Public exploits: 16
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Server Applications Module version 15-SP7 Server Applications Module 15-SP7 is affected by 316 vulnerabilities: 2 critical, 28 high, 188 medium, 98 low Critical High Medium Low

Vulnerabilities (316)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU115006 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-58143
CWE-362 Medium
No
No
- 09.09.2025 SB2025090952
SB2025090955
SB2025091143
and 10 more
#VU115005 - NULL Pointer Dereference
CVE-2025-58142
CWE-476 Medium
No
No
- 09.09.2025 SB2025090952
SB2025090955
SB2025091143
and 10 more
#VU115004 - NULL Pointer Dereference
CVE-2025-27466
CWE-476 Medium
No
No
- 09.09.2025 SB2025090952
SB2025090955
SB2025091143
and 10 more
#VU114414 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-57804
CWE-444 Low
No
No
- 25.08.2025 SB2025082558
SB2025091298
SB2025091302
and 2 more
#VU114096 - Improper input validation
CVE-2025-8715
CWE-20 Medium
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 52 more
#VU114095 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-8714
CWE-94 Low
Public exploit available
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 60 more
#VU114094 - Permissions, Privileges, and Access Controls
CVE-2025-8713
CWE-264 Low
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 32 more
#VU114082 - Out-of-bounds read
CVE-2025-53859
CWE-125 Low
No
No
- 14.08.2025 SB2025081427
SB2025082564
SB2025082961
and 12 more
#VU113672 - Unchecked Return Value
CVE-2025-54571
CWE-252 Medium
No
No
- 06.08.2025 SB2025080617
SB20250816115
SB20250816119
and 40 more
#VU113637 - Integer overflow
CVE-2025-47268
CWE-190 Low
No
No
- 05.08.2025 SB2025080521
SB2025080531
SB2025080532
and 38 more
#VU112734 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2024-42516
CWE-113 Low
No
No
- 10.07.2025 SB2025071040
SB2025071710
SB2025071764
and 36 more
#VU112733 - Server-Side Request Forgery (SSRF)
CVE-2024-43204
CWE-918 Low
No
No
- 10.07.2025 SB2025071040
SB2025071710
SB2025071764
and 28 more
#VU112731 - Improper Encoding or Escaping of Output
CVE-2024-47252
CWE-116 High
No
No
- 10.07.2025 SB2025071040
SB2025071764
SB2025072111
and 35 more
#VU112730 - Security Features
CVE-2025-23048
CWE-254 Medium
Public exploit available
No
- 10.07.2025 SB2025071040
SB2025071764
SB2025072111
and 30 more
#VU112729 - Resource Management Errors
CVE-2025-49630
CWE-399 Medium
No
No
- 10.07.2025 SB2025071040
SB2025071764
SB2025072111
and 27 more
#VU112728 - Cryptographic Issues
CVE-2025-49812
CWE-310 Medium
No
No
- 10.07.2025 SB2025071040
SB2025071764
SB2025072111
and 35 more
#VU112029 - Information Exposure Through Log Files
CVE-2025-50200
CWE-532 Low
No
No
- 27.06.2025 SB2025062797
SB2025091744
SB2025092408
and 1 more
#VU112027 - Observable discrepancy
CVE-2024-56738
CWE-203 Low
No
No
- 27.06.2025 SB2025062781
SB2025062794
SB2025080572
and 8 more
#VU105983 - Resource exhaustion
CVE-2025-30204
CWE-400 Medium
No
No
- 24.03.2025 SB2025032475
SB2025032730
SB2025040333
and 97 more
#VU103686 - Improper Authentication
CVE-2025-23419
CWE-287 Low
No
No
- 06.02.2025 SB2025020653
SB2025020670
SB2025020671
and 17 more


Showing elements 281 - 300 out of 316