Known vulnerabilities in SUSE Linux Enterprise Server for SAP Applications 12-SP4 - page 20

Vendor: SUSE
Version: 12-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_for_sap_applications:*:*:*:*:*:*:*:*
Total vulnerabilities: 566
Public exploits: 41
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server for SAP Applications version 12-SP4 SUSE Linux Enterprise Server for SAP Applications 12-SP4 is affected by 566 vulnerabilities: 1 critical, 36 high, 244 medium, 285 low Critical High Medium Low

Vulnerabilities (566)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67510 - Improper input validation
CVE-2022-2663
CWE-20 Medium
No
No
- 20.09.2022 SB2022092042
SB2022092046
SB2022092047
and 74 more
#VU67509 - Out-of-bounds read
CVE-2022-2905
CWE-125 Low
No
No
- 20.09.2022 SB2022092041
SB2022092046
SB2022092047
and 17 more
#VU67508 - Out-of-bounds read
CVE-2022-39190
CWE-125 Low
No
No
- 20.09.2022 SB2022092040
SB2022092046
SB2022092047
and 15 more
#VU67479 - Use After Free
CVE-2022-2977
CWE-416 Low
No
No
- 20.09.2022 SB2022092005
SB2022092007
SB2022092008
and 25 more
#VU67478 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-39188
CWE-362 Low
No
No
- 20.09.2022 SB2022092004
SB2022092006
SB2022092010
and 83 more
#VU67477 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-3028
CWE-362 Low
No
No
- 20.09.2022 SB2022092003
SB2022092006
SB2022092007
and 63 more
#VU67166 - Server-Side Request Forgery (SSRF)
CVE-2022-35949
CWE-918 Medium
No
No
- 11.09.2022 SB2022091109
SB2022091110
SB2022091217
and 4 more
#VU67164 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-35948
CWE-93 Medium
No
No
- 11.09.2022 SB2022091109
SB2022091110
SB2022091217
and 4 more
#VU67163 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-31150
CWE-93 Medium
No
No
- 11.09.2022 SB2022091108
SB2022091110
SB2022091217
and 2 more
#VU66811 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-36516
CWE-327 Medium
No
No
- 29.08.2022 SB2022022601
SB2022082925
SB2022082926
and 40 more
#VU66698 - Exposure of sensitive information to an unauthorized actor
CVE-2022-29244
CWE-200 Medium
No
No
- 22.08.2022 SB2022082252
SB2022082253
SB2022091110
and 15 more
#VU66589 - NULL Pointer Dereference
CVE-2020-36558
CWE-476 Low
No
No
- 17.08.2022 SB2022081735
SB2022081739
SB2022081740
and 32 more
#VU66588 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-36557
CWE-362 Low
No
No
- 17.08.2022 SB2022081734
SB2022081739
SB2022081740
and 21 more
#VU66550 - Resource Management Errors
CVE-2022-36879
CWE-399 Low
No
No
- 16.08.2022 SB2022081643
SB2022081647
SB2022082923
and 47 more
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
- 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU65498 - Improper input validation
CVE-2022-21549
CWE-20 Medium
No
No
- 20.07.2022 SB2022072046
SB2022072047
SB2022072735
and 34 more
#VU58432 - Use After Free
CVE-2020-21913
CWE-416 Medium
No
No
- 29.11.2021 SB2021112917
SB2021112918
SB2022021808
and 10 more
#VU54520 - Improper input validation
CVE-2020-14343
CWE-20 High
Public exploit available
No
- 04.07.2021 SB2021070403
SB2021070404
SB2022042259
and 17 more
#VU25823 - Improper input validation
CVE-2020-1747
CWE-20 High
No
No
- 09.03.2020 SB2020030903
SB2020041201
SB2020051129
and 21 more
#VU25721 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-8130
CWE-78 High
No
No
- 02.03.2020 SB2020030203
SB2020033103
SB2020052720
and 5 more


Showing elements 381 - 400 out of 566