Known vulnerabilities in SUSE Linux Enterprise Server 15-LTSS - page 65

Vendor: SUSE
Version: 15-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1299
Public exploits: 51
Known exploited (KEV): 19
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-LTSS SUSE Linux Enterprise Server 15-LTSS is affected by 1299 vulnerabilities: 14 critical, 321 high, 454 medium, 510 low Critical High Medium Low

Vulnerabilities (1299)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50988 - Permissions, Privileges, and Access Controls
CVE-2020-28243
CWE-264 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50987 - Improper Certificate Validation
CVE-2020-28972
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50986 - Improper Authentication
CVE-2021-3144
CWE-287 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 28 more
#VU50985 - Improper Certificate Validation
CVE-2020-35662
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50984 - Command injection
CVE-2021-3148
CWE-77 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50983 - Information Exposure Through Log Files
CVE-2021-25284
CWE-532 Low
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50982 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-25283
CWE-94 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50981 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-3197
CWE-78 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50980 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-25282
CWE-22 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50979 - Improper Access Control
CVE-2021-25281
CWE-284 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50955 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-22884
CWE-350 Medium
No
No
- 25.02.2021 SB2021022530
SB2021022532
SB2021022616
and 38 more
#VU50430 - Incorrect Regular Expression
CVE-2020-28493
CWE-185 Medium
No
No
- 01.02.2021 SB2021020905
SB2021020908
SB2021020909
and 21 more
#VU50075 - Reachable Assertion
CVE-2021-3326
CWE-617 Medium
No
No
- 27.01.2021 SB2021012804
SB2021020710
SB2021020711
and 34 more
#VU49916 - Stack-based buffer overflow
CVE-2020-27221
CWE-121 High
No
No
- 21.01.2021 SB2021012130
SB2021030504
SB2021030505
and 16 more
#VU50329 - Out-of-bounds read
CVE-2019-25013
CWE-125 Low
No
No
- 04.01.2021 SB2021020413
SB2021020414
SB2021020710
and 36 more
#VU50404 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-27618
CWE-835 Medium
No
No
- 04.01.2021 SB2021020709
SB2021020710
SB2021020711
and 31 more
#VU50362 - Out-of-bounds write
CVE-2020-29573
CWE-787 Medium
No
No
- 06.12.2020 SB2020120610
SB2021020414
SB2021031411
and 16 more
#VU49670 - Reachable Assertion
CVE-2020-29562
CWE-617 Medium
No
No
- 04.12.2020 SB2021011906
SB2021020710
SB2021020711
and 11 more
#VU47775 - Improper input validation
CVE-2020-14803
CWE-20 Medium
No
No
- 21.10.2020 SB2020102110
SB2020102801
SB2020102802
and 50 more


Showing elements 1281 - 1300 out of 1299