Known vulnerabilities in SUSE Linux Enterprise Module for Python2 15-SP2

Vendor: SUSE
Version: 15-SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_python2:*:*:*:*:*:*:*:*
Total vulnerabilities: 39
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Python2 version 15-SP2 SUSE Linux Enterprise Module for Python2 15-SP2 is affected by 39 vulnerabilities: 1 critical, 9 high, 21 medium, 8 low Critical High Medium Low

Vulnerabilities (39)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66467 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-42771
CWE-22 Medium
No
No
- 12.08.2022 SB20211214110
SB2022081226
SB2022083038
and 18 more
#VU65859 - Resource exhaustion
CVE-2020-29651
CWE-400 Medium
No
No
- 28.07.2022 SB2022072916
SB2022081723
SB2022093029
and 8 more
#VU62512 - Improper input validation
CVE-2021-3572
CWE-20 Medium
No
No
- 22.04.2022 SB2022042257
SB2022042259
SB2021071390
and 51 more
#VU59089 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-3737
CWE-835 Low
No
No
- 22.12.2021 SB2021122214
SB2022050235
SB2022051138
and 58 more
#VU58295 - Resource Management Errors
CVE-2021-3733
CWE-399 Low
No
No
- 23.11.2021 SB2021112309
SB2021122214
SB2022050235
and 41 more
#VU58292 - Command injection
CVE-2021-31607
CWE-77 Low
No
No
- 23.11.2021 SB2021042332
SB2021112302
SB2021052114
and 24 more
#VU58098 - Improper Access Control
CVE-2016-2124
CWE-284 High
No
No
- 10.11.2021 SB2021111008
SB2021111201
SB2021112913
and 34 more
#VU58097 - Permissions, Privileges, and Access Controls
CVE-2020-25717
CWE-264 Medium
No
No
- 10.11.2021 SB2021111008
SB2021111201
SB2021112913
and 43 more
#VU58091 - Improper input validation
CVE-2021-23192
CWE-20 Medium
No
No
- 10.11.2021 SB2021111008
SB2021111201
SB2021112914
and 19 more
#VU54479 - Improper Verification of Cryptographic Signature
CVE-2021-3421
CWE-347 Medium
No
No
- 30.06.2021 SB2021063036
SB2021071302
SB2021072003
and 15 more
#VU54478 - Out-of-bounds read
CVE-2021-20266
CWE-125 Low
No
No
- 30.06.2021 SB2021063035
SB2021072003
SB2021111133
and 16 more
#VU54477 - Insufficient Verification of Data Authenticity
CVE-2021-20271
CWE-345 Medium
No
No
- 30.06.2021 SB2021063035
SB2021063038
SB2021071302
and 34 more
#VU53289 - Improper input validation
CVE-2021-3541
CWE-20 Medium
No
No
- 16.05.2021 SB2021051601
SB2021051602
SB2021061811
and 32 more
#VU51588 - Incorrect Implementation of Authentication Algorithm
CVE-2021-25315
CWE-303 Low
No
No
- 22.03.2021 SB2021032203
SB2021062235
SB2021062236
and 8 more
#VU48206 - Improper Authentication
CVE-2020-25592
CWE-287 High
Public exploit available
No
- 06.11.2020 SB2020110934
SB2020110935
SB2020110936
and 11 more
#VU47403 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-26137
CWE-93 Medium
No
No
- 30.09.2020 SB2020100716
SB2020121420
SB2021052028
and 35 more
#VU27495 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-11652
CWE-22 Medium
Public exploit available
Exploited
- 04.05.2020 SB2020050410
SB2020050417
SB2020050506
and 10 more
#VU27494 - Improper Authentication
CVE-2020-11651
CWE-287 Critical
Public exploit available
Exploited
- 04.05.2020 SB2020050410
SB2020050417
SB2020050506
and 10 more
#VU15545 - Command injection
CVE-2018-15751
CWE-77 Low
No
No
- 26.10.2018 SB2018102608
SB2018121816
SB2018122002
and 6 more
#VU15544 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-15750
CWE-22 Low
No
No
- 25.10.2018 SB2018102608
SB2018121816
SB2018122002
and 6 more


Showing elements 1 - 20 out of 39