Known vulnerabilities in SUSE Linux Enterprise Server 15-SP2-BCL - page 36

Vendor: SUSE
Version: 15-SP2-BCL
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 970
Public exploits: 36
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP2-BCL SUSE Linux Enterprise Server 15-SP2-BCL is affected by 970 vulnerabilities: 7 critical, 251 high, 322 medium, 390 low Critical High Medium Low

Vulnerabilities (970)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU64661 - Insufficient Session Expiration
CVE-2022-0996
CWE-613 Medium
No
No
- 24.06.2022 SB2022062433
SB2022062933
SB2022072073
and 13 more
#VU63128 - Memory corruption
CVE-2022-0918
CWE-119 Medium
Public exploit available
No
- 12.05.2022 SB2022051236
SB2022051237
SB2022062433
and 13 more
#VU61895 - Resource exhaustion
CVE-2022-24713
CWE-400 Medium
No
No
- 05.04.2022 SB2022040527
SB2022040526
SB2022040529
and 34 more
#VU61894 - Use After Free
CVE-2022-1196
CWE-416 High
No
No
- 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 23 more
#VU61892 - Memory corruption
CVE-2022-28289
CWE-119 High
No
No
- 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61890 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-28286
CWE-451 Medium
No
No
- 05.04.2022 SB2022040526
SB2022040628
SB2022040629
and 23 more
#VU61889 - Resource Management Errors
CVE-2022-28285
CWE-399 Low
No
No
- 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 26 more
#VU61886 - Use After Free
CVE-2022-28282
CWE-416 High
Public exploit available
No
- 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61885 - Out-of-bounds write
CVE-2022-28281
CWE-787 High
Public exploit available
No
- 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
- 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU61608 - Improper Authentication
CVE-2022-0547
CWE-287 Medium
No
No
- 24.03.2022 SB2022032420
SB2022032423
SB2022040412
and 17 more
#VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-25220
CWE-350 Medium
No
No
- 17.03.2022 SB2022031701
SB2022031719
SB2022031725
and 57 more
#VU61287 - Improper input validation
CVE-2022-22719
CWE-20 Medium
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 32 more
#VU61286 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-22720
CWE-444 Medium
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 56 more
#VU61285 - Integer overflow
CVE-2022-22721
CWE-190 High
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 39 more
#VU61284 - Out-of-bounds write
CVE-2022-23943
CWE-787 High
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 34 more


Showing elements 701 - 720 out of 970