Known vulnerabilities in SUSE Linux Enterprise Server 15-SP3-LTSS - page 6

Vendor: SUSE
Version: 15-SP3-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 723
Public exploits: 37
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP3-LTSS SUSE Linux Enterprise Server 15-SP3-LTSS is affected by 723 vulnerabilities: 2 critical, 137 high, 269 medium, 315 low Critical High Medium Low

Vulnerabilities (723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU77620 - Exposure of sensitive information to an unauthorized actor
CVE-2023-1387
CWE-200 Medium
No
No
- 22.06.2023 SB2023062227
SB2023062230
SB2023062231
and 7 more
#VU75360 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-1410
CWE-79 Low
No
No
- 19.04.2023 SB2023041950
SB2023041951
SB2023041952
and 11 more
#VU75359 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-0594
CWE-79 Low
No
No
- 19.04.2023 SB2023041949
SB2023041951
SB2023041952
and 6 more
#VU75358 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-0507
CWE-79 Low
No
No
- 19.04.2023 SB2023041949
SB2023041951
SB2023041952
and 6 more
#VU73782 - NULL Pointer Dereference
CVE-2022-3606
CWE-476 Low
No
No
- 17.03.2023 SB2023031716
SB2023031725
SB2023031726
and 8 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72256 - Out-of-bounds write
CVE-2023-25732
CWE-787 High
No
No
- 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 38 more
#VU72255 - Insufficient UI Warning of Dangerous Operations
CVE-2023-25729
CWE-357 Medium
No
No
- 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 39 more
#VU72250 - Out-of-bounds write
CVE-2023-0767
CWE-787 Medium
No
No
- 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 84 more
#VU72249 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-25730
CWE-451 Medium
No
No
- 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 39 more
#VU72248 - Exposure of sensitive information to an unauthorized actor
CVE-2023-25728
CWE-200 Medium
No
No
- 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 39 more
#VU71567 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23552
CWE-79 Low
No
No
- 26.01.2023 SB2023012632
SB2023032032
SB2023032033
and 10 more
#VU71566 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-39324
CWE-451 Low
No
No
- 26.01.2023 SB2023012631
SB2023032032
SB2023032033
and 12 more
#VU71173 - Integer overflow
CVE-2023-0179
CWE-190 Low
Public exploit available
No
- 16.01.2023 SB2023011603
SB2023012450
SB2023021001
and 49 more
#VU69691 - Use of Password Hash Instead of Password for Authentication
CVE-2022-46146
CWE-836 Low
No
No
- 29.11.2022 SB2022112926
SB2022113012
SB2023022044
and 33 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
- 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
- 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
- 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
- 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
- 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more


Showing elements 101 - 120 out of 723