Suse Linux Enterprise Server For Sap 15 vulnerabilities
8 known vulnerabilities affecting suse/suse_linux_enterprise_server_for_sap_15.
Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH6MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2022-31254HIGHCVSS 7.8≥ rmt-server, < 2.102023-02-07
CVE-2022-31254 [HIGH] CWE-276 CVE-2022-31254: A Incorrect Default Permissions vulnerability in rmt-server-regsharing service of SUSE Linux Enterpr
A Incorrect Default Permissions vulnerability in rmt-server-regsharing service of SUSE Linux Enterprise Server for SAP 15, SUSE Linux Enterprise Server for SAP 15-SP1, SUSE Manager Server 4.1; openSUSE Leap 15.3, openSUSE Leap 15.4 allows local attackers with access to the _rmt user to escalate to root. This issue affects: SUSE Linux Enterprise Server
cvelistv5nvd
CVE-2020-8027MEDIUMCVSS 6.6≥ openldap2, < 2.4.46-9.37.12021-02-11
CVE-2020-8027 [HIGH] CWE-377 CVE-2020-8027: A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE L
A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Leap 15.2 allows local attackers to overwrite arbitrary files and gain access to the openldap2 configuration This issue affects: SUSE Linux Enterprise Server 15-LTSS openldap2 versions prior
cvelistv5nvd
CVE-2020-8023HIGHCVSS 7.8≥ openldap2, < 2.4.46-9.31.12020-09-01
CVE-2020-8023 [HIGH] CWE-349 CVE-2020-8023: A acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in the start script of ope
A acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in the start script of openldap2 of SUSE Enterprise Storage 5, SUSE Linux Enterprise Debuginfo 11-SP3, SUSE Linux Enterprise Debuginfo 11-SP4, SUSE Linux Enterprise Point of Sale 11-SP3, SUSE Linux Enterprise Server 11-SECURITY, SUSE Linux Enterprise Server 11-SP4-LTSS, SUSE Linux
cvelistv5nvd
CVE-2020-8025CRITICALCVSS 9.3≥ permissions, < 20180125-3.27.12020-08-07
CVE-2020-8025 [MEDIUM] CWE-279 CVE-2020-8025: A Incorrect Execution-Assigned Permissions vulnerability in the permissions package of SUSE Linux En
A Incorrect Execution-Assigned Permissions vulnerability in the permissions package of SUSE Linux Enterprise Server 12-SP4, SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Tumbleweed sets the permissions for some of the directories of the pcp package to unintended settings. This issue affects
cvelistv5nvd
CVE-2020-8022HIGHCVSS 7.8≥ tomcat, < 9.0.35-3.57.32020-06-29
CVE-2020-8022 [HIGH] CWE-276 CVE-2020-8022: A Incorrect Default Permissions vulnerability in the packaging of tomcat on SUSE Enterprise Storage
A Incorrect Default Permissions vulnerability in the packaging of tomcat on SUSE Enterprise Storage 5, SUSE Linux Enterprise Server 12-SP2-BCL, SUSE Linux Enterprise Server 12-SP2-LTSS, SUSE Linux Enterprise Server 12-SP3-BCL, SUSE Linux Enterprise Server 12-SP3-LTSS, SUSE Linux Enterprise Server 12-SP4, SUSE Linux Enterprise Server 12-SP5, SUSE Linux En
cvelistv5nvd
CVE-2019-18904HIGHCVSS 7.5≥ rmt-server, < 2.5.2-3.26.12020-04-03
CVE-2019-18904 [MEDIUM] CWE-400 CVE-2019-18904: A Uncontrolled Resource Consumption vulnerability in rmt of SUSE Linux Enterprise High Performance C
A Uncontrolled Resource Consumption vulnerability in rmt of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Public Cloud 15-SP1, SUSE Linux Enterprise Module for Server Applications 15, SUSE Linux Enterprise Module for Server Applications 15-SP1, SU
cvelistv5nvd
CVE-2019-3695HIGHCVSS 7.8≥ pcp, < 3.11.9-5.8.12020-03-03
CVE-2019-3695 [HIGH] CWE-94 CVE-2019-3695: A Improper Control of Generation of Code vulnerability in the packaging of pcp of SUSE Linux Enterpr
A Improper Control of Generation of Code vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Development Tools 15, SUSE Linux Enterprise Module for Development Tools 15-SP1, SUSE Linux Enterprise Module for Open Build
cvelistv5nvd
CVE-2019-3696HIGHCVSS 7.3≥ pcp, < 3.11.9-5.8.12020-03-03
CVE-2019-3696 [HIGH] CWE-22 CVE-2019-3696: A Improper Limitation of a Pathname to a Restricted Directory vulnerability in the packaging of pcp
A Improper Limitation of a Pathname to a Restricted Directory vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Development Tools 15, SUSE Linux Enterprise Module for Development Tools 15-SP1, SUSE Linux Enterprise M
cvelistv5nvd