Known vulnerabilities in SUSE Linux Enterprise Server for SAP Applications 12-SP5 - page 19

Vendor: SUSE
Version: 12-SP5
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_for_sap_applications:*:*:*:*:*:*:*:*
Total vulnerabilities: 738
Public exploits: 32
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server for SAP Applications version 12-SP5 SUSE Linux Enterprise Server for SAP Applications 12-SP5 is affected by 738 vulnerabilities: 3 critical, 167 high, 281 medium, 287 low Critical High Medium Low

Vulnerabilities (738)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67166 - Server-Side Request Forgery (SSRF)
CVE-2022-35949
CWE-918 Medium
No
No
- 11.09.2022 SB2022091109
SB2022091110
SB2022091217
and 4 more
#VU67164 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-35948
CWE-93 Medium
No
No
- 11.09.2022 SB2022091109
SB2022091110
SB2022091217
and 4 more
#VU67163 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-31150
CWE-93 Medium
No
No
- 11.09.2022 SB2022091108
SB2022091110
SB2022091217
and 2 more
#VU67136 - Integer overflow
CVE-2020-13999
CWE-190 High
No
No
- 08.09.2022 SB2020061535
SB2022090851
SB2022090852
and 3 more
#VU67130 - Integer overflow
CVE-2021-20224
CWE-190 High
No
No
- 08.09.2022 SB2022090828
SB2022090829
SB2022090830
and 6 more
#VU66986 - Improper Certificate Validation
CVE-2021-39359
CWE-295 Medium
No
No
- 05.09.2022 SB2021082207
SB2022090523
SB2021122251
and 1 more
#VU66881 - Improper input validation
CVE-2022-35252
CWE-20 Medium
No
No
- 31.08.2022 SB2022083106
SB2022090108
SB2022090217
and 55 more
#VU66698 - Exposure of sensitive information to an unauthorized actor
CVE-2022-29244
CWE-200 Medium
No
No
- 22.08.2022 SB2022082252
SB2022082253
SB2022091110
and 15 more
#VU66587 - Out-of-bounds write
CVE-2022-32893
CWE-787 Critical
No
Exploited
- 17.08.2022 SB2022081718
SB2022081719
SB2022081921
and 18 more
#VU65621 - Out-of-bounds write
CVE-2022-32792
CWE-787 High
No
No
- 21.07.2022 SB2022072101
SB2022072104
SB2022072105
and 21 more
#VU65620 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-32816
CWE-451 Medium
No
No
- 21.07.2022 SB2022072101
SB2022072105
SB2022072106
and 19 more
#VU64024 - Improper input validation
CVE-2021-3802
CWE-20 Low
No
No
- 07.06.2022 SB2021112920
SB2022061544
SB2022090742
and 7 more
#VU58432 - Use After Free
CVE-2020-21913
CWE-416 Medium
No
No
- 29.11.2021 SB2021112917
SB2021112918
SB2022021808
and 10 more
#VU57585 - Out-of-bounds write
CVE-2021-41159
CWE-787 High
No
No
- 21.10.2021 SB2021102126
SB2021111204
SB2021111205
and 15 more
#VU57584 - Out-of-bounds write
CVE-2021-41160
CWE-787 High
No
No
- 21.10.2021 SB2021102126
SB2021111204
SB2021111205
and 17 more
#VU54520 - Improper input validation
CVE-2020-14343
CWE-20 High
Public exploit available
No
- 04.07.2021 SB2021070403
SB2021070404
SB2022042259
and 17 more
#VU27882 - Out-of-bounds write
CVE-2020-12762
CWE-787 High
No
No
- 13.05.2020 SB2020051323
SB2020052812
SB2020061526
and 54 more
#VU25823 - Improper input validation
CVE-2020-1747
CWE-20 High
No
No
- 09.03.2020 SB2020030903
SB2020041201
SB2020051129
and 21 more
#VU25721 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-8130
CWE-78 High
No
No
- 02.03.2020 SB2020030203
SB2020033103
SB2020052720
and 5 more
#VU39832 - Improper input validation
CVE-2017-0386
CWE-20 High
No
No
- 12.01.2017 SB2017011226
SB2022090849
SB2022090850
and 5 more


Showing elements 361 - 380 out of 738