Known vulnerabilities in SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON - page 5

Vendor: SUSE
Version: 12-SP2-LTSS-ERICSSON
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 389
Public exploits: 27
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP2-LTSS-ERICSSON SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON is affected by 389 vulnerabilities: 1 critical, 35 high, 221 medium, 132 low Critical High Medium Low

Vulnerabilities (389)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88178 - Insufficient Verification of Data Authenticity
CVE-2024-30261
CWE-345 Medium
No
No
- 05.04.2024 SB2024040527
SB2024041611
SB2024041618
and 12 more
#VU88177 - Exposure of sensitive information to an unauthorized actor
CVE-2024-30260
CWE-200 Low
No
No
- 05.04.2024 SB2024040527
SB2024041611
SB2024041618
and 11 more
#VU88175 - Reachable Assertion
CVE-2024-27983
CWE-617 Medium
Public exploit available
No
- 05.04.2024 SB2024040526
SB2024040851
SB2024040852
and 56 more
#VU87185 - UNIX Symbolic Link (Symlink) Following
CVE-2023-6597
CWE-61 Low
No
No
- 07.03.2024 SB2024030718
SB2024030726
SB2024030727
and 88 more
#VU86733 - Improper input validation
CVE-2024-22025
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 34 more
#VU86724 - Covert Timing Channel
CVE-2023-46809
CWE-385 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 35 more
#VU86721 - Improper input validation
CVE-2024-22019
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 48 more
#VU86718 - Improper Handling of Exceptional Conditions
CVE-2024-21892
CWE-755 Low
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 30 more
#VU86709 - Exposure of sensitive information to an unauthorized actor
CVE-2024-24758
CWE-200 Low
No
No
- 22.02.2024 SB2024022211
SB2024022225
SB2024022832
and 13 more
#VU86707 - Server-Side Request Forgery (SSRF)
CVE-2024-24806
CWE-918 Medium
No
No
- 22.02.2024 SB2024022210
SB2024022214
SB2024022225
and 54 more
#VU86038 - Incorrect Authorization
CVE-2024-23653
CWE-863 High
Public exploit available
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 23 more
#VU86037 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-23652
CWE-22 Medium
No
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU86035 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-23651
CWE-362 Medium
No
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU85991 - Security Features
CVE-2024-21626
CWE-254 High
Public exploit available
No
- 01.02.2024 SB2024020112
SB2024020113
SB2024020123
and 78 more
#VU84797 - Command injection
CVE-2023-51765
CWE-77 Medium
No
No
- 27.12.2023 SB2023122716
SB2024013167
SB2024030417
and 4 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
- 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more
#VU77164 - Exposure of sensitive information to an unauthorized actor
CVE-2023-32681
CWE-200 Medium
Public exploit available
No
- 12.06.2023 SB2023061224
SB2023061306
SB2023061514
and 113 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
- 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
- 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
- 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more


Showing elements 81 - 100 out of 389