Suse Linux Enterprise Server
Vendor:
First CVE: Jul 17, 2014 · Active for 12 years
15
Total CVEs
More Total CVEs than 90% of tracked products
3.8
Avg CVEs / Year
Higher CVE frequency than 90% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 67% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Suse Linux Enterprise Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 17, 2014
12 years ago
Most Recent CVE
Feb 22, 2020
2,345 days ago
CVE Severity & Scoring
Suse Linux Enterprise Server15 CVEs
20%
53%
27%
All CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (13.3%)
Network12 (80.0%)
Unknown1 (6.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (93.3%)
High0 (0.0%)
Unknown1 (6.7%)
User Interaction
None11 (73.3%)
Unknown1 (6.7%)
Required3 (20.0%)
Privileges Required
Low1 (6.7%)
High0 (0.0%)
None13 (86.7%)
Unknown1 (6.7%)
Top CVEs
Signals from CVEs in this product scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-8813HIGH graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has the graph real-time privilege. | Feb 22, 2020 | 8.8 | 80 | NO | YES |
CVE-2014-9843CRITICAL The DecodePSDPixels function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact via unknown vectors. | Mar 20, 2017 | 9.8 | 27 | NO | NO |
CVE-2014-9846CRITICAL Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact. | Mar 20, 2017 | 9.8 | 26 | NO | NO |
CVE-2014-9847CRITICAL The jng decoder in ImageMagick 6.8.9.9 allows remote attackers to have an unspecified impact. | Mar 20, 2017 | 9.8 | 25 | NO | NO |
CVE-2014-9841CRITICAL The ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact via unknown vectors, related to "throwing of exceptions." | Mar 20, 2017 | 9.8 | 25 | NO | NO |
CVE-2016-1645HIGH Multiple integer signedness errors in the opj_j2k_update_image_data function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 49.0.2623.87, allow remote attackers to | Mar 13, 2016 | 8.8 | 25 | NO | NO |
CVE-2015-3405HIGH ntp-keygen in ntp 4.2.8px before 4.2.8p2-RC2 and 4.3.x before 4.3.12 does not generate MD5 keys with sufficient entropy on big endian machines when the lowest order byte of the tem | Aug 9, 2017 | 7.5 | 21 | NO | NO |
CVE-2014-9851HIGH ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (application crash). | Mar 20, 2017 | 7.5 | 20 | NO | NO |
CVE-2014-9850HIGH Logic error in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (resource consumption). | Mar 20, 2017 | 7.5 | 20 | NO | NO |
CVE-2014-9849HIGH The png coder in ImageMagick allows remote attackers to cause a denial of service (crash). | Mar 20, 2017 | 7.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (15 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
6.7% of CVEs· Bottom 1%
ExploitDB
1 CVE
6.7% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (15 CVEs).
Media Mentions
Signals from CVEs in this product scope (15 CVEs).
Top CNAs Publishing CVEs For Suse Linux Enterprise Server
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 12.0 | 12 | 8.0 | 3.5% | 0 | 0 |
| 11.0 | 9 | 7.4 | 3.7% | 0 | 0 |