Known vulnerabilities in SUSE Linux Enterprise Server 15-SP1 - page 5

Vendor: SUSE
Version: 15-SP1
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 168
Public exploits: 9
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP1 SUSE Linux Enterprise Server 15-SP1 is affected by 168 vulnerabilities: 6 high, 28 medium, 134 low Critical High Medium Low

Vulnerabilities (168)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68860 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-31163
CWE-22 Medium
No
No
- 31.10.2022 SB2022103147
SB2022103161
SB2022072942
and 6 more
#VU66814 - Improper Access Control
CVE-2021-44225
CWE-284 Low
No
No
- 29.08.2022 SB2021112614
SB2022082931
SB2022083038
and 9 more
#VU66704 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-32209
CWE-79 Low
No
No
- 23.08.2022 SB2022082304
SB2022082309
SB2022082429
and 4 more
#VU66591 - Out-of-bounds read
CVE-2022-1462
CWE-125 Low
No
No
- 17.08.2022 SB2022081737
SB2022081739
SB2022081740
and 49 more
#VU66590 - Out-of-bounds write
CVE-2021-33656
CWE-787 Low
No
No
- 17.08.2022 SB2022081736
SB2022081739
SB2022081740
and 48 more
#VU66589 - NULL Pointer Dereference
CVE-2020-36558
CWE-476 Low
No
No
- 17.08.2022 SB2022081735
SB2022081739
SB2022081740
and 32 more
#VU66588 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-36557
CWE-362 Low
No
No
- 17.08.2022 SB2022081734
SB2022081739
SB2022081740
and 21 more
#VU66476 - Improper input validation
CVE-2022-36946
CWE-20 Medium
Public exploit available
No
- 13.08.2022 SB2022081305
SB2022081647
SB2022081739
and 73 more
#VU65903 - Permissions, Privileges, and Access Controls
CVE-2022-2553
CWE-264 Low
No
No
- 01.08.2022 SB2022080105
SB2022080113
SB2022080114
and 12 more
#VU65859 - Resource exhaustion
CVE-2020-29651
CWE-400 Medium
No
No
- 28.07.2022 SB2022072916
SB2022081723
SB2022093029
and 8 more
#VU65833 - Out-of-bounds write
CVE-2021-33655
CWE-787 Low
No
No
- 27.07.2022 SB2022072725
SB2022072814
SB2022081739
and 77 more
#VU65824 - Missing release of memory after effective lifetime
CVE-2022-32742
CWE-401 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 36 more
#VU64861 - Use After Free
CVE-2022-1679
CWE-416 Low
No
No
- 02.07.2022 SB2022070218
SB2022070221
SB2022070717
and 82 more
#VU64208 - Permissions, Privileges, and Access Controls
CVE-2022-20166
CWE-264 Low
No
No
- 13.06.2022 SB2022061414
SB2022081739
SB2022081740
and 16 more
#VU64207 - Permissions, Privileges, and Access Controls
CVE-2022-20154
CWE-264 Low
No
No
- 13.06.2022 SB2022061414
SB2022071602
SB2022071603
and 32 more
#VU64156 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-1729
CWE-362 Low
No
No
- 10.06.2022 SB2022061213
SB2022061417
SB2022061630
and 79 more
#VU64134 - Permissions, Privileges, and Access Controls
CVE-2022-20141
CWE-264 Low
No
No
- 09.06.2022 SB2022061009
SB2022062437
SB2022062440
and 57 more
#VU63961 - Improper Access Control
CVE-2022-21499
CWE-284 Low
No
No
- 03.06.2022 SB2022060302
SB2022060303
SB2022060822
and 39 more
#VU63418 - Use After Free
CVE-2022-1419
CWE-416 Low
No
No
- 19.05.2022 SB2022060822
SB2022061630
SB2022061634
and 28 more
#VU61565 - Exposure of resource to wrong sphere
CVE-2021-26341
CWE-668 Low
No
No
- 23.03.2022 SB2022032308
SB2022071346
SB2022071602
and 32 more


Showing elements 81 - 100 out of 168