Known vulnerabilities in SUSE Linux Enterprise Server 12 SP2 - page 21

Vendor: SUSE
Version: SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 468
Public exploits: 26
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 12 version SP2 SUSE Linux Enterprise Server 12 SP2 is affected by 468 vulnerabilities: 6 critical, 82 high, 197 medium, 183 low Critical High Medium Low

Vulnerabilities (468)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU74056 - Configuration
CWE-16 Low
No
No
- 27.03.2023 SB2023032753
#VU73893 - Use After Free
CVE-2022-42332
CWE-416 Medium
No
No
- 21.03.2023 SB2023032151
SB2023032161
SB2023032163
and 12 more
#VU73892 - Processor optimization removal or modification of security-critical code
CVE-2022-42331
CWE-1037 Medium
No
No
- 21.03.2023 SB2023032151
SB2023032161
SB2023032163
and 12 more
#VU73678 - Exposure of sensitive information to an unauthorized actor
CVE-2023-25750
CWE-200 Low
No
No
- 14.03.2023 SB2023031479
SB2023031502
SB2023031601
and 6 more
#VU73677 - Improper Access Control
CVE-2023-25749
CWE-284 High
No
No
- 14.03.2023 SB2023031479
SB2023031502
SB2023031641
and 2 more
#VU73676 - Insufficient UI Warning of Dangerous Operations
CVE-2023-25748
CWE-357 Medium
No
No
- 14.03.2023 SB2023031479
SB2023031502
SB2023031641
and 2 more
#VU73673 - Out-of-bounds read
CVE-2023-25752
CWE-125 Medium
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73670 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-25751
CWE-94 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 39 more
#VU73171 - Memory corruption
CVE-2023-1175
CWE-119 High
No
No
- 08.03.2023 SB2023030818
SB2023031642
SB2023031656
and 17 more
#VU73170 - Heap-based Buffer Overflow
CVE-2023-1170
CWE-122 High
No
No
- 08.03.2023 SB2023030818
SB2023031642
SB2023031656
and 16 more
#VU73107 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-25690
CWE-113 Medium
Public exploit available
No
- 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 54 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72341 - Divide By Zero
CVE-2023-0512
CWE-369 Low
No
No
- 16.02.2023 SB2023021674
SB2023031642
SB2023031656
and 11 more
#VU72321 - Improper Privilege Management
CVE-2022-36109
CWE-269 Low
No
No
- 16.02.2023 SB2023021619
SB2023021620
SB2023031742
and 14 more
#VU72161 - Type confusion
CVE-2023-23529
CWE-843 Critical
No
Exploited
- 13.02.2023 SB2023021339
SB2023021340
SB2023021341
and 18 more
#VU71567 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23552
CWE-79 Low
No
No
- 26.01.2023 SB2023012632
SB2023032032
SB2023032033
and 10 more
#VU71566 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-39324
CWE-451 Low
No
No
- 26.01.2023 SB2023012631
SB2023032032
SB2023032033
and 12 more
#VU71436 - Memory corruption
CVE-2023-23518
CWE-119 High
No
No
- 23.01.2023 SB2023012333
SB2023012334
SB2023012335
and 22 more
#VU70039 - Resource exhaustion
CVE-2022-23471
CWE-400 Medium
No
No
- 08.12.2022 SB2022120802
SB2022121324
SB2022122112
and 27 more
#VU197 - Resource exhaustion
CVE-2016-3092
CWE-400 Medium
No
No
- 22.07.2016 SB2016070602
SB2016070203
SB2016063002
and 20 more


Showing elements 401 - 420 out of 468