Known vulnerabilities in SUSE Linux Enterprise Server 15-SP2-BCL - page 16

Vendor: SUSE
Version: 15-SP2-BCL
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 970
Public exploits: 36
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP2-BCL SUSE Linux Enterprise Server 15-SP2-BCL is affected by 970 vulnerabilities: 7 critical, 251 high, 322 medium, 390 low Critical High Medium Low

Vulnerabilities (970)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67504 - Improper input validation
CVE-2022-40957
CWE-20 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 28 more
#VU67503 - Security Features
CVE-2022-40956
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 30 more
#VU67502 - Security Features
CVE-2022-40958
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 30 more
#VU67501 - Use After Free
CVE-2022-40960
CWE-416 High
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67500 - Security Features
CVE-2022-40959
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU66725 - Use After Free
CVE-2022-38476
CWE-416 Low
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082515
and 27 more
#VU66724 - Memory corruption
CVE-2022-38478
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66723 - Memory corruption
CVE-2022-38477
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082502
and 28 more
#VU66720 - Permissions, Privileges, and Access Controls
CVE-2022-38473
CWE-264 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66719 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38472
CWE-451 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 35 more
#VU65795 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-36318
CWE-79 Medium
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU65794 - Exposure of resource to wrong sphere
CVE-2022-36314
CWE-668 Low
No
No
- 26.07.2022 SB2022072633
SB2022072906
SB2022091450
and 4 more
#VU65793 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-36319
CWE-451 Low
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU64768 - Memory corruption
CVE-2022-34485
CWE-119 High
No
No
- 29.06.2022 SB2022062902
SB2022070523
SB2022081404
and 3 more
#VU64764 - Access of Uninitialized Pointer
CVE-2022-34480
CWE-824 Low
No
No
- 29.06.2022 SB2022062902
SB2022070523
SB2022070726
and 8 more
#VU64763 - Memory corruption
CVE-2022-34484
CWE-119 High
No
No
- 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 37 more
#VU64756 - Integer overflow
CVE-2022-34481
CWE-190 Medium
No
No
- 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 42 more
#VU64754 - Insufficient UI Warning of Dangerous Operations
CVE-2022-34483
CWE-357 Medium
No
No
- 28.06.2022 SB2022062902
SB2022070523
SB2022081404
and 3 more
#VU64753 - Insufficient UI Warning of Dangerous Operations
CVE-2022-34482
CWE-357 Medium
No
No
- 28.06.2022 SB2022062902
SB2022070523
SB2022081404
and 3 more
#VU64750 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-34479
CWE-1021 Medium
No
No
- 28.06.2022 SB2022062901
SB2022062902
SB2022062903
and 37 more


Showing elements 301 - 320 out of 970