Known vulnerabilities in SUSE Linux Enterprise Server 15 SP2 - page 2

Vendor: SUSE
Version: SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 1703
Public exploits: 87
Known exploited (KEV): 30
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 version SP2 SUSE Linux Enterprise Server 15 SP2 is affected by 1703 vulnerabilities: 19 critical, 263 high, 514 medium, 906 low Critical High Medium Low

Vulnerabilities (1703)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118722 - Allocation of Resources Without Limits or Throttling
CVE-2025-47908
CWE-770 Medium
No
No
- 24.11.2025 SB2025112452
SB2025112453
SB2025112454
and 2 more
#VU106253 - Improper input validation
CVE-2025-22870
CWE-20 Medium
Public exploit available
No
- 30.03.2025 SB2025033001
SB2025033002
SB2025033003
and 106 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
- 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU104138 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-45339
CWE-59 Low
No
No
- 21.02.2025 SB2025022137
SB2025022138
SB2025022141
and 35 more
#VU104016 - Exposure of sensitive information to an unauthorized actor
CVE-2024-22037
CWE-200 Low
No
No
- 17.02.2025 SB2025021737
SB2025021738
SB2025021739
and 5 more
#VU103503 - Exposure of sensitive information to an unauthorized actor
CVE-2024-11741
CWE-200 Medium
No
No
- 03.02.2025 SB2025020329
SB2025022148
SB2025022149
and 1 more
#VU103421 - Argument Injection or Modification
CVE-2025-21613
CWE-88 Low
No
No
- 29.01.2025 SB2025012918
SB2025012919
SB2025012920
and 27 more
#VU101942 - Incorrect Default Permissions
CVE-2024-21820
CWE-276 Low
No
No
- 27.12.2024 SB2024122731
SB2024122734
SB2024122735
and 11 more
#VU101941 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-23918
CWE-754 Low
No
No
- 27.12.2024 SB2024122731
SB2024122734
SB2024122735
and 14 more
#VU101936 - Improper Finite State Machines (FSMs) in Hardware Logic
CVE-2024-21853
CWE-1245 Low
No
No
- 27.12.2024 SB2024122729
SB2024122734
SB2024122735
and 14 more
#VU101894 - Insufficient Technical Documentation
CVE-2024-51744
CWE-1059 Low
No
No
- 23.12.2024 SB2024122304
SB2024122309
SB20241230139
and 21 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Public exploit available
No
- 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU100999 - Information Exposure Through Log Files
CVE-2024-8775
CWE-532 Low
No
No
- 27.11.2024 SB2024112745
SB2024112746
SB2024120371
and 14 more
#VU99849 - Improper input validation
CVE-2024-50089
CWE-20 Low
No
No
- 05.11.2024 SB20241105107
SB2024112267
SB2024112950
and 18 more
#VU99259 - Improper Access Control
CVE-2024-8118
CWE-284 Low
No
No
- 22.10.2024 SB20241022375
SB2025021467
SB2025021742
and 1 more
#VU98871 - Use After Free
CVE-2024-49925
CWE-416 Low
No
No
- 21.10.2024 SB2024102176
SB2024120386
SB2024121502
and 64 more
#VU96048 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-6837
CWE-79 Medium
No
No
- 15.08.2024 SB2024081534
SB2025021467
SB2025021742
and 1 more
#VU91319 - Improper Locking
CVE-2023-52524
CWE-667 Low
No
No
- 08.06.2024 SB2024060835
SB2024060853
SB2024060854
and 31 more
#VU88804 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-27306
CWE-79 Medium
No
No
- 18.04.2024 SB2024041813
SB2024042444
SB2024042445
and 12 more
#VU87935 - Authorization Bypass Through User-Controlled Key
CVE-2022-4806
CWE-639
No
No
- 01.04.2024 SB2023010514
SB2024040137
SB2024122405
and 2 more


Showing elements 21 - 40 out of 1703