Known vulnerabilities in SUSE Linux Enterprise Server 15 SP7 - page 218

Vendor: SUSE
Version: SP7
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 5180
Public exploits: 114
Known exploited (KEV): 21
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 version SP7 SUSE Linux Enterprise Server 15 SP7 is affected by 5180 vulnerabilities: 13 critical, 463 high, 1238 medium, 3465 low Critical High Medium Low

Vulnerabilities (5180)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114764 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2025-57833
CWE-89 High
Public exploit available
No
- 03.09.2025 SB2025090342
SB2025090433
SB2025090469
and 19 more
#VU114677 - Out-of-bounds read
CVE-2025-8067
CWE-125 Low
Public exploit available
No
- 02.09.2025 SB2025090252
SB2025090254
SB2025090255
and 18 more
#VU114391 - Memory corruption
CVE-2025-9187
CWE-119 High
No
No
- 22.08.2025 SB2025081946
SB2025082303
SB2025082839
and 4 more
#VU114390 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-9183
CWE-451 Medium
No
No
- 22.08.2025 SB2025081946
SB2025082839
SB2025082840
and 5 more
#VU114389 - Resource exhaustion
CVE-2025-9182
CWE-400 Low
No
No
- 22.08.2025 SB2025081946
SB2025082301
SB2025082303
and 28 more
#VU114387 - Use of Uninitialized Variable
CVE-2025-9181
CWE-457 High
No
No
- 22.08.2025 SB2025081946
SB2025082223
SB2025082301
and 33 more
#VU114346 - Command injection
CVE-2025-7962
CWE-77 Medium
No
No
- 21.08.2025 SB2025082145
SB2025082146
SB2025082147
and 57 more
#VU114227 - Memory corruption
CVE-2025-9180
CWE-119 High
No
No
- 19.08.2025 SB2025081946
SB2025082223
SB2025082301
and 33 more
#VU114225 - Memory corruption
CVE-2025-9179
CWE-119 High
No
No
- 19.08.2025 SB2025081946
SB2025082223
SB2025082301
and 33 more
#VU113069 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-53643
CWE-444 Medium
No
No
- 18.07.2025 SB2025071857
SB2025090377
SB2025091303
and 15 more
#VU112646 - Product UI does not Warn User of Unsafe Actions
CVE-2025-46835
CWE-356 Medium
No
No
- 09.07.2025 SB2025070994
SB20250709121
SB2025071019
and 22 more
#VU112643 - Improper input validation
CVE-2025-27614
CWE-20 High
No
No
- 09.07.2025 SB2025070994
SB20250709119
SB2025071019
and 18 more
#VU112642 - Protection Mechanism Failure
CVE-2025-27613
CWE-693 High
No
No
- 09.07.2025 SB2025070994
SB20250709122
SB2025071019
and 22 more
#VU112638 - Improper input validation
CVE-2025-48385
CWE-20 High
No
No
- 09.07.2025 SB2025070989
SB2025070990
SB2025070991
and 38 more
#VU112637 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2025-48384
CWE-93 Medium
Public exploit available
Exploited
- 09.07.2025 SB2025070989
SB2025070990
SB2025070991
and 52 more
#VU112274 - Improper input validation
CVE-2025-52434
CWE-20 Medium
No
No
- 04.07.2025 SB20250704167
SB2025072535
SB2025072536
and 32 more
#VU110694 - Improper input validation
CVE-2025-40908
CWE-20 Medium
No
No
- 10.06.2025 SB2025061036
SB2025061044
SB2025061173
and 8 more
#VU107469 - Integer overflow
CVE-2025-2760
CWE-190 High
No
No
- 16.04.2025 SB2025041618
SB2025050984
SB2025050985
and 4 more
#VU103970 - Improper input validation
CVE-2025-1094
CWE-20 Critical
Public exploit available
Exploited
- 14.02.2025 SB2025021408
SB2025022038
SB2025022039
and 78 more
#VU37356 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2017-11509
CWE-89 High
No
No
- 28.03.2018 SB2018032829
SB20250908117


Showing elements 4341 - 4360 out of 5180