Known vulnerabilities in SUSE Linux Enterprise Server for SAP Applications 12-SP4 - page 19

Vendor: SUSE
Version: 12-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_for_sap_applications:*:*:*:*:*:*:*:*
Total vulnerabilities: 566
Public exploits: 41
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server for SAP Applications version 12-SP4 SUSE Linux Enterprise Server for SAP Applications 12-SP4 is affected by 566 vulnerabilities: 1 critical, 36 high, 244 medium, 285 low Critical High Medium Low

Vulnerabilities (566)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68424 - Use After Free
CVE-2020-16119
CWE-416 Low
No
No
- 18.10.2022 SB2021011456
SB2022101867
SB2022102428
and 17 more
#VU68422 - Use After Free
CVE-2022-41222
CWE-416 Low
No
No
- 18.10.2022 SB2022101862
SB2022101865
SB2022101866
and 26 more
#VU67777 - NULL Pointer Dereference
CVE-2022-39028
CWE-476 Medium
No
No
- 30.09.2022 SB2022093027
SB2022093028
SB2022102638
and 12 more
#VU67591 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-28861
CWE-601 Low
No
No
- 22.09.2022 SB2022092243
SB2022092244
SB2022093032
and 76 more
#VU67514 - Use After Free
CVE-2022-3078
CWE-416 Low
No
No
- 20.09.2022 SB2022092045
SB2022092047
SB2022092049
and 2 more
#VU67513 - Use After Free
CVE-2022-2938
CWE-416 Low
No
No
- 20.09.2022 SB2022092044
SB2022092047
SB2022092049
and 15 more
#VU67512 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2016-3695
CWE-74 Low
No
No
- 20.09.2022 SB2017122926
SB2022092046
SB2022092047
and 6 more
#VU67511 - Use After Free
CVE-2020-27784
CWE-416 Low
No
No
- 20.09.2022 SB2022092043
SB2022092046
SB2022092823
and 5 more
#VU67474 - Out-of-bounds write
CVE-2022-20369
CWE-787 Low
No
No
- 20.09.2022 SB2022092006
SB2022092007
SB2022092008
and 37 more
#VU67473 - Out-of-bounds read
CVE-2022-20368
CWE-125 Low
No
No
- 19.09.2022 SB2022092006
SB2022092007
SB2022092008
and 44 more
#VU66934 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-2959
CWE-362 Low
No
No
- 02.09.2022 SB2022090210
SB2022090218
SB2022090603
and 17 more
#VU66810 - Permissions, Privileges, and Access Controls
CVE-2022-2503
CWE-264 Low
No
No
- 29.08.2022 SB2022082921
SB2022082923
SB2022090218
and 38 more
#VU66807 - Out-of-bounds read
CVE-2022-2873
CWE-125 Low
No
No
- 29.08.2022 SB2022082915
SB2022082923
SB2022090218
and 27 more
#VU66397 - Double Free
CVE-2022-2588
CWE-415 Low
Public exploit available
Exploited
- 11.08.2022 SB2022081109
SB2022081110
SB2022081111
and 99 more
#VU63838 - Use After Free
CVE-2021-4203
CWE-416 Low
No
No
- 31.05.2022 SB2022062928
SB2022062931
SB2022070643
and 42 more
#VU63535 - Resource exhaustion
CVE-2021-33135
CWE-400 Low
No
No
- 23.05.2022 SB2022052314
SB2022092047
SB2022092049
and 2 more
#VU63352 - Use of Uninitialized Resource
CVE-2022-20008
CWE-908 Low
No
No
- 18.05.2022 SB2022051831
SB2022051832
SB2022061631
and 10 more
#VU62794 - Unprotected Transport of Credentials
CVE-2021-27023
CWE-523 Medium
No
No
- 04.05.2022 SB2022050414
SB2022050430
SB2022060135
and 5 more
#VU59812 - Permissions, Privileges, and Access Controls
CVE-2021-4155
CWE-264 Low
No
No
- 19.01.2022 SB2022011910
SB2022011932
SB2022011937
and 54 more
#VU48793 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-27783
CWE-79 Medium
No
No
- 03.12.2020 SB2020120602
SB2020120603
SB2020121305
and 20 more


Showing elements 361 - 380 out of 566