Known vulnerabilities in SUSE Linux Enterprise Server 12 SP3 - page 6

Vendor: SUSE
Version: SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 258
Public exploits: 17
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 12 version SP3 SUSE Linux Enterprise Server 12 SP3 is affected by 258 vulnerabilities: 2 critical, 20 high, 152 medium, 84 low Critical High Medium Low

Vulnerabilities (258)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86038 - Incorrect Authorization
CVE-2024-23653
CWE-863 High
Public exploit available
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 23 more
#VU85991 - Security Features
CVE-2024-21626
CWE-254 High
Public exploit available
No
- 01.02.2024 SB2024020112
SB2024020113
SB2024020123
and 78 more
#VU85743 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-50447
CWE-94 High
No
No
- 24.01.2024 SB2024012413
SB2024012417
SB2024012465
and 34 more
#VU84786 - Insufficient Session Expiration
CVE-2023-49935
CWE-613 High
No
No
- 26.12.2023 SB2023122628
SB2023122706
SB2023122707
and 5 more
#VU84785 - NULL Pointer Dereference
CVE-2023-49936
CWE-476 Medium
No
No
- 26.12.2023 SB2023122628
SB2023122706
SB2023122707
and 18 more
#VU84784 - Double Free
CVE-2023-49937
CWE-415 High
No
No
- 26.12.2023 SB2023122628
SB2023122706
SB2023122707
and 18 more
#VU84783 - Improper Access Control
CVE-2023-49938
CWE-284 Low
No
No
- 26.12.2023 SB2023122628
SB2023122706
SB2023122707
and 18 more
#VU84782 - Improper Enforcement of Message Integrity During Transmission in a Communication Channel
CVE-2023-49933
CWE-924 Medium
No
No
- 26.12.2023 SB2023122628
SB2023122706
SB2023122707
and 18 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
- 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more
#VU64430 - Incorrect Authorization
CVE-2021-41244
CWE-863 Medium
No
No
- 16.06.2022 SB2021111513
SB2022062026
SB2022102094
and 5 more
#VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43815
CWE-22 Low
No
No
- 15.06.2022 SB2021121022
SB2022062026
SB2022102094
and 8 more
#VU64402 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21673
CWE-200 Low
No
No
- 15.06.2022 SB2022061623
SB2022062026
SB2022081215
and 12 more
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
- 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
- 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU60003 - Exposed Dangerous Method or Function
CVE-2022-22817
CWE-749 High
No
No
- 25.01.2022 SB2022012523
SB2022012526
SB2022022226
and 26 more
#VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43798
CWE-22 High
Public exploit available
Exploited
- 08.12.2021 SB2021120803
SB2022062026
SB2022102094
and 7 more
#VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-41174
CWE-79 Low
Public exploit available
No
- 03.11.2021 SB2021110312
SB2021110517
SB2022062026
and 4 more
#VU57320 - Improper Access Control
CVE-2021-39226
CWE-284 Medium
Public exploit available
Exploited
- 12.10.2021 SB2021101262
SB2021101320
SB2021101321
and 22 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
- 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
- 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more


Showing elements 101 - 120 out of 258