Known vulnerabilities in SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON - page 9

Vendor: SUSE
Version: 12-SP2-LTSS-ERICSSON
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 394
Public exploits: 27
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP2-LTSS-ERICSSON SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON is affected by 394 vulnerabilities: 1 critical, 36 high, 224 medium, 133 low Critical High Medium Low

Vulnerabilities (394)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU77620 - Exposure of sensitive information to an unauthorized actor
CVE-2023-1387
CWE-200 Medium
No
No
- 22.06.2023 SB2023062227
SB2023062230
SB2023062231
and 7 more
#VU77606 - Inconsistency Between Implementation and Documented Design
CVE-2023-30590
CWE-1068 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 33 more
#VU77605 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-30589
CWE-444 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 43 more
#VU77252 - NULL Pointer Dereference
CVE-2023-2953
CWE-476 Medium
No
No
- 13.06.2023 SB2023061366
SB2023061417
SB2023061418
and 59 more
#VU76651 - Resource Management Errors
CVE-2023-2650
CWE-399 Medium
No
No
- 30.05.2023 SB2023053040
SB2023053044
SB2023053045
and 131 more
#VU76426 - Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2023-31147
CWE-338 Medium
No
No
- 23.05.2023 SB2023052309
SB2023052312
SB2023053021
and 39 more
#VU76425 - Buffer Underwrite ('Buffer Underflow')
CVE-2023-31130
CWE-124 Low
No
No
- 23.05.2023 SB2023052309
SB2023052312
SB2023053021
and 55 more
#VU76424 - Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2023-31124
CWE-338 Medium
No
No
- 23.05.2023 SB2023052309
SB2023052312
SB2023053021
and 33 more
#VU76423 - Improper input validation
CVE-2023-32067
CWE-20 Medium
No
No
- 23.05.2023 SB2023052312
SB2023053021
SB2023060711
and 35 more
#VU76422 - Improper input validation
CVE-2023-32067
CWE-20 Medium
No
No
- 23.05.2023 SB2023052309
SB2023052312
SB2023053021
and 66 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
- 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
- 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
- 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
- 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU65355 - Incorrect Regular Expression
CVE-2020-7753
CWE-185 Medium
No
No
- 15.07.2022 SB2020102724
SB2022071510
SB2023062230
and 12 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
- 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
- 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
- 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
- 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
- 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more


Showing elements 161 - 180 out of 394