Known vulnerabilities in SUSE Linux Enterprise Server 15-SP1-BCL - page 23

Vendor: SUSE
Version: 15-SP1-BCL
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1414
Public exploits: 57
Known exploited (KEV): 23
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP1-BCL SUSE Linux Enterprise Server 15-SP1-BCL is affected by 1414 vulnerabilities: 15 critical, 326 high, 501 medium, 572 low Critical High Medium Low

Vulnerabilities (1414)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU65351 - Exposure of sensitive information to an unauthorized actor
CVE-2022-33741
CWE-200 Low
No
No
- 15.07.2022 SB2022071603
SB2022071604
SB2022071605
and 59 more
#VU65348 - Exposure of sensitive information to an unauthorized actor
CVE-2022-33742
CWE-200 Low
No
No
- 15.07.2022 SB2022071603
SB2022071604
SB2022071605
and 56 more
#VU65223 - Out-of-bounds write
CVE-2022-2320
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 28 more
#VU65222 - Out-of-bounds write
CVE-2022-2319
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 25 more
#VU64944 - Use After Free
CVE-2022-33981
CWE-416 Low
No
No
- 06.07.2022 SB2022070606
SB2022070743
SB2022071346
and 37 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
- 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
- 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
- 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU64089 - Improper Authentication
CVE-2022-31813
CWE-287 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 49 more
#VU64088 - Out-of-bounds read
CVE-2022-30556
CWE-125 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 31 more
#VU64086 - Resource exhaustion
CVE-2022-30522
CWE-400 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061723
and 31 more
#VU64085 - Improper input validation
CVE-2022-29404
CWE-20 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 30 more
#VU64083 - Out-of-bounds read
CVE-2022-28615
CWE-125 Low
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 41 more
#VU64081 - Out-of-bounds read
CVE-2022-28614
CWE-125 Low
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 36 more
#VU64078 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-26377
CWE-444 Medium
Public exploit available
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 39 more
#VU64007 - Resource exhaustion
CVE-2022-31030
CWE-400 Medium
No
No
- 07.06.2022 SB2022060702
SB2022061206
SB2022061326
and 23 more
#VU63168 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-29217
CWE-327 Medium
No
No
- 13.05.2022 SB2022051319
SB2022071428
SB2022071429
and 12 more
#VU63090 - Permissions, Privileges, and Access Controls
CVE-2022-29162
CWE-264 Medium
No
No
- 12.05.2022 SB2022051205
SB2022062435
SB2022071158
and 32 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Public exploit available
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62512 - Improper input validation
CVE-2021-3572
CWE-20 Medium
No
No
- 22.04.2022 SB2022042257
SB2022042259
SB2021071390
and 51 more


Showing elements 441 - 460 out of 1414