Known vulnerabilities in SUSE Linux Enterprise Server 12 SP4 - page 5

Vendor: SUSE
Version: SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 466
Public exploits: 26
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 12 version SP4 SUSE Linux Enterprise Server 12 SP4 is affected by 466 vulnerabilities: 5 critical, 69 high, 213 medium, 179 low Critical High Medium Low

Vulnerabilities (466)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88828 - Resource exhaustion
CVE-2024-3651
CWE-400 Medium
No
No
- 19.04.2024 SB2024041905
SB2024041906
SB2024041907
and 112 more
#VU88178 - Insufficient Verification of Data Authenticity
CVE-2024-30261
CWE-345 Medium
No
No
- 05.04.2024 SB2024040527
SB2024041611
SB2024041618
and 12 more
#VU88177 - Exposure of sensitive information to an unauthorized actor
CVE-2024-30260
CWE-200 Low
No
No
- 05.04.2024 SB2024040527
SB2024041611
SB2024041618
and 11 more
#VU88176 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2024-27982
CWE-444 Medium
No
No
- 05.04.2024 SB2024040526
SB2024040851
SB2024040852
and 53 more
#VU88175 - Reachable Assertion
CVE-2024-27983
CWE-617 Medium
Public exploit available
No
- 05.04.2024 SB2024040526
SB2024040851
SB2024040852
and 56 more
#VU88063 - Memory corruption
CVE-2024-28219
CWE-119 Medium
No
No
- 03.04.2024 SB2024040318
SB2024040320
SB2024040844
and 28 more
#VU87185 - UNIX Symbolic Link (Symlink) Following
CVE-2023-6597
CWE-61 Low
No
No
- 07.03.2024 SB2024030718
SB2024030726
SB2024030727
and 88 more
#VU87033 - Inefficient Regular Expression Complexity
CVE-2024-27351
CWE-1333 Medium
No
No
- 04.03.2024 SB2024030431
SB2024030441
SB2024030442
and 21 more
#VU86733 - Improper input validation
CVE-2024-22025
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 34 more
#VU86724 - Covert Timing Channel
CVE-2023-46809
CWE-385 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 35 more
#VU86721 - Improper input validation
CVE-2024-22019
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 48 more
#VU86718 - Improper Handling of Exceptional Conditions
CVE-2024-21892
CWE-755 Low
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 30 more
#VU86709 - Exposure of sensitive information to an unauthorized actor
CVE-2024-24758
CWE-200 Low
No
No
- 22.02.2024 SB2024022211
SB2024022225
SB2024022832
and 13 more
#VU86707 - Server-Side Request Forgery (SSRF)
CVE-2024-24806
CWE-918 Medium
No
No
- 22.02.2024 SB2024022210
SB2024022214
SB2024022225
and 54 more
#VU86037 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-23652
CWE-22 Medium
No
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU86035 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-23651
CWE-362 Medium
No
No
- 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU84797 - Command injection
CVE-2023-51765
CWE-77 Medium
No
No
- 27.12.2023 SB2023122716
SB2024013167
SB2024030417
and 4 more
#VU77164 - Exposure of sensitive information to an unauthorized actor
CVE-2023-32681
CWE-200 Medium
Public exploit available
No
- 12.06.2023 SB2023061224
SB2023061306
SB2023061514
and 113 more
#VU67756 - Security Features
CVE-2022-31629
CWE-254 Low
Public exploit available
No
- 29.09.2022 SB2022092960
SB2022093041
SB2022101944
and 49 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
- 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more


Showing elements 81 - 100 out of 466