2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24285 | HIGH | 7.8 | 0.2% | Mar 10, 2022 | Acer Care Center 4.00.30xx before 4.00.3042 contains a local privilege escalation vulnerability. The user process commun... |
| CVE-2022-24193 | CRITICAL | 9.8 | 6.0% | Mar 10, 2022 | CasaOS before v0.2.7 was discovered to contain a command injection vulnerability. |
| CVE-2022-24177 | MEDIUM | 6.1 | 0.7% | Mar 10, 2022 | A cross-site scripting (XSS) vulnerability in the component cgi-bin/ej.cgi of Ex libris ALEPH 500 v18.1 and v20 allows a... |
| CVE-2022-23940 | HIGH | 8.8 | 54.2% | Mar 10, 2022 | SuiteCRM through 7.12.1 and 8.x through 8.0.1 allows Remote Code Execution. Authenticated users with access to the Sched... |
| CVE-2022-23383 | CRITICAL | 9.1 | 1.5% | Mar 10, 2022 | YzmCMS v6.3 is affected by broken access control. Without login, unauthorized access to the user's personal home page ca... |
| CVE-2022-22985 | HIGH | 8.8 | 1.0% | Mar 10, 2022 | The absence of filters when loading some sections in the web application of the vulnerable device allows attackers to in... |
| CVE-2022-22835 | MEDIUM | 6.5 | 14.5% | Mar 10, 2022 | An issue was discovered in OverIT Geocall before version 8.0. An authenticated user who has the Test Trasformazione XSL ... |
| CVE-2022-22834 | HIGH | 8.8 | 3.3% | Mar 10, 2022 | An issue was discovered in OverIT Geocall before 8.0. An authenticated user who has the Test Trasformazione XSL function... |
| CVE-2022-22814 | CRITICAL | 9.8 | 2.3% | Mar 10, 2022 | The System Diagnosis service of MyASUS before 3.1.2.0 allows privilege escalation. |
| CVE-2022-22795 | CRITICAL | 9.1 | 1.0% | Mar 10, 2022 | Signiant - Manager+Agents XML External Entity (XXE) - Extract internal files of the affected machine An attacker can rea... |
| CVE-2022-22547 | HIGH | 7.5 | 2.5% | Mar 10, 2022 | Simple Diagnostics Agent - versions 1.0 (up to version 1.57.), allows an attacker to access information which would othe... |
| CVE-2022-21219 | HIGH | 7.8 | 1.0% | Mar 10, 2022 | Out-of-bounds read vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an ... |
| CVE-2022-21170 | LOW | 3.7 | 0.9% | Mar 10, 2022 | Improper check for certificate revocation in i-FILTER Ver.10.45R01 and earlier, i-FILTER Ver.9.50R10 and earlier, i-FILT... |
| CVE-2022-21158 | MEDIUM | 5.4 | 0.5% | Mar 10, 2022 | A stored cross-site scripting vulnerability in marktext versions prior to v0.17.0 due to improper handling of the link (... |
| CVE-2022-21146 | MEDIUM | 6.1 | 0.9% | Mar 10, 2022 | Persistent cross-site scripting in the web interface of ipDIO allows an unauthenticated remote attacker to introduce arb... |
| CVE-2022-21132 | MEDIUM | 6.5 | 1.7% | Mar 10, 2022 | Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfS... |
| CVE-2022-21124 | HIGH | 7.8 | 1.4% | Mar 10, 2022 | Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an... |
| CVE-2022-20060 | MEDIUM | 6.6 | 0.1% | Mar 10, 2022 | In preloader (usb), there is a possible permission bypass due to a missing proper image authentication. This could lead ... |
| CVE-2022-20059 | MEDIUM | 6.6 | 0.1% | Mar 10, 2022 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca... |
| CVE-2022-20058 | MEDIUM | 6.6 | 0.1% | Mar 10, 2022 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca... |
| CVE-2022-20057 | MEDIUM | 6.5 | 0.1% | Mar 10, 2022 | In btif, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of p... |
| CVE-2022-20056 | MEDIUM | 6.6 | 0.1% | Mar 10, 2022 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca... |
| CVE-2022-20055 | MEDIUM | 6.8 | 0.1% | Mar 10, 2022 | In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca... |
| CVE-2022-20054 | HIGH | 7.8 | 0.2% | Mar 10, 2022 | In ims service, there is a possible AT command injection due to a missing permission check. This could lead to local esc... |
| CVE-2022-20053 | HIGH | 7.8 | 0.1% | Mar 10, 2022 | In ims service, there is a possible escalation of privilege due to a missing permission check. This could lead to local ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now