Known vulnerabilities in SUSE Linux Enterprise Server 12-SP5 - page 35

Vendor: SUSE
Version: 12-SP5
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1647
Public exploits: 69
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP5 SUSE Linux Enterprise Server 12-SP5 is affected by 1647 vulnerabilities: 14 critical, 407 high, 558 medium, 668 low Critical High Medium Low

Vulnerabilities (1647)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64438 - Use After Free
CVE-2022-1184
CWE-416 Low
No
No
- 16.06.2022 SB2022061630
SB2022061631
SB2022061632
and 63 more
#VU64434 - Use After Free
CVE-2022-1652
CWE-416 Low
No
No
- 16.06.2022 SB2022061630
SB2022061631
SB2022061632
and 47 more
#VU64433 - Out-of-bounds read
CVE-2021-39711
CWE-125 Low
No
No
- 16.06.2022 SB2022061633
SB2022061635
SB2022061725
and 5 more
#VU64430 - Incorrect Authorization
CVE-2021-41244
CWE-863 Medium
No
No
- 16.06.2022 SB2021111513
SB2022062026
SB2022102094
and 5 more
#VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43815
CWE-22 Low
No
No
- 15.06.2022 SB2021121022
SB2022062026
SB2022102094
and 8 more
#VU64402 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21673
CWE-200 Low
No
No
- 15.06.2022 SB2022061623
SB2022062026
SB2022081215
and 12 more
#VU64399 - Cross-Site Request Forgery (CSRF)
CVE-2022-21703
CWE-352 Medium
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64397 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21702
CWE-79 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64394 - Authorization Bypass Through User-Controlled Key
CVE-2022-21713
CWE-639 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 13 more
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
- 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU64156 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-1729
CWE-362 Low
No
No
- 10.06.2022 SB2022061213
SB2022061417
SB2022061630
and 79 more
#VU64082 - Use After Free
CVE-2022-1734
CWE-416 Low
No
No
- 08.06.2022 SB2022060827
SB2022061630
SB2022061633
and 40 more
#VU64070 - Use After Free
CVE-2022-1966
CWE-416 Low
Public exploit available
No
- 08.06.2022 SB2022060822
SB2022060823
SB2022060824
and 44 more
#VU61017 - Memory corruption
CVE-2022-21716
CWE-119 Medium
No
No
- 04.03.2022 SB2022030407
SB2022032438
SB2022032448
and 17 more
#VU60490 - Improper input validation
CVE-2021-33061
CWE-20 Low
No
No
- 10.02.2022 SB2022021004
SB2022061630
SB2022061631
and 31 more
#VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43798
CWE-22 High
Public exploit available
Exploited
- 08.12.2021 SB2021120803
SB2022062026
SB2022102094
and 7 more
#VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-41174
CWE-79 Low
Public exploit available
No
- 03.11.2021 SB2021110312
SB2021110517
SB2022062026
and 4 more
#VU57320 - Improper Access Control
CVE-2021-39226
CWE-284 Medium
Public exploit available
Exploited
- 12.10.2021 SB2021101262
SB2021101320
SB2021101321
and 22 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
- 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more
#VU28418 - Use After Free
CVE-2019-19377
CWE-416 Low
No
No
- 29.11.2019 SB2019112914
SB2022061630
SB2022061631
and 14 more


Showing elements 681 - 700 out of 1647