Known vulnerabilities in SUSE Linux Enterprise Server 12 SP2 - page 7

Vendor: SUSE
Version: SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 463
Public exploits: 26
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 12 version SP2 SUSE Linux Enterprise Server 12 SP2 is affected by 463 vulnerabilities: 6 critical, 81 high, 194 medium, 182 low Critical High Medium Low

Vulnerabilities (463)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
- 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more
#VU82944 - UNIX Symbolic Link (Symlink) Following
CVE-2023-34049
CWE-61 Low
No
No
- 09.11.2023 SB2023110931
SB2023110932
SB2023110933
and 17 more
#VU82894 - Resource Management Errors
CVE-2023-5678
CWE-399 Medium
No
No
- 07.11.2023 SB20231107122
SB2023112047
SB2023112048
and 147 more
#VU82228 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-41914
CWE-362 Low
No
No
- 18.10.2023 SB20231018127
SB20231018129
SB20231018130
and 26 more
#VU82070 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-39333
CWE-94 Low
No
No
- 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 28 more
#VU82069 - Improper Validation of Integrity Check Value
CVE-2023-38552
CWE-354 Medium
No
No
- 17.10.2023 SB2023101703
SB2023101801
SB2023101802
and 34 more
#VU82066 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45143
CWE-200 Medium
No
No
- 17.10.2023 SB2023101702
SB2023101703
SB2023101801
and 31 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Public exploit available
Exploited
- 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 648 more
#VU81322 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43804
CWE-200 Low
Public exploit available
No
- 02.10.2023 SB2023100251
SB2023100259
SB2023100260
and 112 more
#VU80228 - Cleartext Transmission of Sensitive Information
CVE-2023-40217
CWE-319 Medium
No
No
- 01.09.2023 SB2023090142
SB2023090143
SB2023090144
and 139 more
#VU79967 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-40577
CWE-79 Low
No
No
- 25.08.2023 SB2023082505
SB2024012403
SB2024021614
and 5 more
#VU72132 - Improper Authentication
CVE-2022-39229
CWE-287 Low
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 13 more
#VU72131 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39201
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 12 more
#VU72130 - Exposure of sensitive information to an unauthorized actor
CVE-2022-31130
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 11 more
#VU72128 - Improper Verification of Cryptographic Signature
CVE-2022-31123
CWE-347 Medium
No
No
- 11.02.2023 SB2023021201
SB2023021202
SB2023021203
and 15 more
#VU69485 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39307
CWE-200 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU69484 - Improper input validation
CVE-2022-39306
CWE-20 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU48373 - Exposure of sensitive information to an unauthorized actor
CVE-2020-12912
CWE-200 Low
No
No
- 11.11.2020 SB2020111118
SB2023120115
SB2023121950
and 4 more
#VU48372 - Observable Response Discrepancy
CVE-2020-8695
CWE-204 Low
No
No
- 11.11.2020 SB2020111117
SB2020112423
SB2020112424
and 35 more
#VU48371 - Improper Access Control
CVE-2020-8694
CWE-284 Low
No
No
- 11.11.2020 SB2020111117
SB2023120115
SB2023121950
and 9 more


Showing elements 121 - 140 out of 463