Known vulnerabilities in SUSE Linux Enterprise Server for SAP Applications 15 SP2

Vendor: SUSE
Version: SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_for_sap_applications_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 1686
Public exploits: 87
Known exploited (KEV): 30
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server for SAP Applications 15 version SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP2 is affected by 1686 vulnerabilities: 19 critical, 257 high, 507 medium, 902 low Critical High Medium Low

Vulnerabilities (1686)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU132319 - Information Exposure Through Timing Discrepancy
CVE-2026-47783
CWE-208 Low
No
No
- 26.05.2026 SB2026052674
SB20260528298
SB20260529197
and 4 more
#VU132320 - Information Exposure Through Timing Discrepancy
CVE-2026-47784
CWE-208 Low
No
No
- 26.05.2026 SB2026052674
SB20260528278
SB20260528298
and 3 more
#VU124876 - Inefficient Regular Expression Complexity
CVE-2026-25547
CWE-1333 Low
No
No
- 06.04.2026 SB2026040628
SB2026040631
SB2026040632
and 13 more
#VU123913 - Improper Access Control
CVE-2024-29371
CWE-284 Medium
No
No
- 12.03.2026 SB2026031212
SB2026031213
SB2026031310
and 28 more
#VU123311 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-1615
CWE-94 High
No
No
- 27.02.2026 SB2026022707
SB2026022708
SB2026032720
and 4 more
#VU123310 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2025-61140
CWE-1321 High
No
No
- 27.02.2026 SB2026022706
SB2026022708
SB2026030405
and 3 more
#VU123174 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-27606
CWE-22 High
Public exploit available
No
- 24.02.2026 SB2026022445
SB2026040631
SB2026040632
and 2 more
#VU122756 - Improper Access Control
CVE-2026-21722
CWE-284 Low
No
No
- 12.02.2026 SB2026021238
SB20260325198
SB2026040631
and 1 more
#VU122160 - Resource Management Errors
CVE-2026-21720
CWE-399 Medium
No
No
- 30.01.2026 SB2026013061
SB20260325198
SB2026040631
#VU122159 - Improper Privilege Management
CVE-2026-21721
CWE-269 Low
Public exploit available
No
- 30.01.2026 SB2026013061
SB2026022335
SB2026030249
and 4 more
#VU121928 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2025-13465
CWE-1321 Medium
No
No
- 22.01.2026 SB2026012209
SB2026012701
SB2026012744
and 66 more
#VU120232 - Uncontrolled Recursion
CVE-2025-68156
CWE-674 Medium
No
No
- 22.12.2025 SB2025122249
SB2025122250
SB2025122251
and 12 more
#VU120229 - Improper Authentication
CVE-2025-62349
CWE-287 Low
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU120228 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-62348
CWE-94 Medium
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU119885 - Improper Neutralization of HTTP Headers for Scripting Syntax
CVE-2025-67724
CWE-644 Low
No
No
- 12.12.2025 SB2025121205
SB2026010587
SB2026010938
and 35 more
#VU119884 - Excessive Iteration
CVE-2025-67725
CWE-834 Low
No
No
- 12.12.2025 SB2025121205
SB2026010587
SB2026010938
and 41 more
#VU119883 - Excessive Iteration
CVE-2025-67726
CWE-834 Medium
No
No
- 12.12.2025 SB2025121205
SB2025123045
SB2026010587
and 41 more
#VU119233 - Resource exhaustion
CVE-2025-13836
CWE-400 Medium
No
No
- 06.12.2025 SB2025120602
SB20251226352
SB2025123104
and 36 more
#VU119131 - Interpretation Conflict
CVE-2025-12816
CWE-436 Medium
No
No
- 04.12.2025 SB2025120419
SB2025122219
SB20260116128
and 19 more
#VU113081 - Exposure of sensitive information to an unauthorized actor
CVE-2025-3415
CWE-200 Medium
No
No
- 21.07.2025 SB2025072113
SB2025112453
SB2025112454
and 3 more


Showing elements 1 - 20 out of 1686