Known vulnerabilities in SUSE Linux Enterprise Server 15 SP2 LTSS - page 61

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15_sp2_ltss:*:*:*:*:*:*:*:*
Total vulnerabilities: 1474
Public exploits: 79
Known exploited (KEV): 25
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 SP2 LTSS SUSE Linux Enterprise Server 15 SP2 LTSS is affected by 1474 known vulnerabilities: 18 critical, 245 high, 432 medium, 779 low Critical High Medium Low

Vulnerabilities (1474)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU77620 - Exposure of sensitive information to an unauthorized actor
CVE-2023-1387
CWE-200 Medium
No
No
- 22.06.2023 SB2023062227
SB2023062230
SB2023062231
and 7 more
#VU77526 - Permissions, Privileges, and Access Controls
CVE-2023-2728
CWE-264 Medium
Available
No
- 19.06.2023 SB2023061947
SB2023061950
SB2023061951
and 15 more
#VU77525 - Permissions, Privileges, and Access Controls
CVE-2023-2727
CWE-264 Medium
No
No
- 19.06.2023 SB2023061947
SB2023061950
SB2023061951
and 15 more
#VU76417 - Allocation of Resources Without Limits or Throttling
CVE-2023-28709
CWE-770 Medium
No
No
- 22.05.2023 SB2023052235
SB2023053003
SB2023053052
and 35 more
#VU76312 - Use After Free
CVE-2023-32373
CWE-416 Critical
No
Exploited
- 18.05.2023 SB2023051859
SB2023051860
SB2023051903
and 19 more
#VU76310 - Out-of-bounds read
CVE-2023-28204
CWE-125 High
No
Exploited
- 18.05.2023 SB2023051859
SB2023051860
SB2023051903
and 21 more
#VU75360 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-1410
CWE-79 Low
No
No
- 19.04.2023 SB2023041950
SB2023041951
SB2023041952
and 11 more
#VU75105 - Memory corruption
CVE-2023-27349
CWE-119 Low
No
No
- 13.04.2023 SB2023041354
SB2023061925
SB2023061939
and 16 more
#VU72427 - Allocation of Resources Without Limits or Throttling
CVE-2023-24998
CWE-770 Medium
Available
No
- 20.02.2023 SB2023022046
SB2023022047
SB2023030917
and 202 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
- 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
- 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
- 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
- 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU65355 - Incorrect Regular Expression
CVE-2020-7753
CWE-185 Medium
No
No
- 15.07.2022 SB2020102724
SB2022071510
SB2023062230
and 12 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
- 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
- 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
- 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
- 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
- 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more
#VU57967 - Improper input validation
CVE-2021-3807
CWE-20 Medium
No
No
- 05.11.2021 SB2021110513
SB2021112603
SB2022042257
and 51 more


Showing elements 1201 - 1220 out of 1474