2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23176 | HIGH | 8.8 | 12.2% | Feb 24, 2022 | WatchGuard Firebox and XTM appliances allow a remote attacker with unprivileged credentials to access the system with a ... |
| CVE-2022-23043 | HIGH | 7.2 | 1.4% | Feb 24, 2022 | Zenario CMS 9.2 allows an authenticated admin user to bypass the file upload restriction by creating a new 'File/MIME Ty... |
| CVE-2022-21179 | MEDIUM | 4.3 | 0.5% | Feb 24, 2022 | Cross-site request forgery (CSRF) vulnerability in EC-CUBE plugin 'Mail Magazine Management Plugin' ver4.0.0 to 4.1.1 (f... |
| CVE-2022-21142 | CRITICAL | 9.8 | 1.5% | Feb 24, 2022 | Authentication bypass vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.74, Ver.2.9.x series versio... |
| CVE-2022-0695 | MEDIUM | 5.5 | 0.9% | Feb 24, 2022 | Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4. |
| CVE-2022-25331 | HIGH | 7.5 | 3.0% | Feb 24, 2022 | Uncaught exceptions that can be generated in Trend Micro ServerProtection 6.0/5.8 Information Server could allow a remot... |
| CVE-2022-25330 | CRITICAL | 9.8 | 4.9% | Feb 24, 2022 | Integer overflow conditions that exist in Trend Micro ServerProtect 6.0/5.8 Information Server could allow a remote atta... |
| CVE-2022-25329 | CRITICAL | 9.8 | 2.6% | Feb 24, 2022 | Trend Micro ServerProtect 6.0/5.8 Information Server uses a static credential to perform authentication when a specific ... |
| CVE-2022-24680 | HIGH | 7.8 | 0.5% | Feb 24, 2022 | A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Se... |
| CVE-2022-24679 | HIGH | 7.8 | 0.5% | Feb 24, 2022 | A security link following local privilege escalation vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Se... |
| CVE-2022-24678 | HIGH | 7.5 | 2.3% | Feb 24, 2022 | An security agent resource exhaustion denial-of-service vulnerability in Trend Micro Apex One, Trend Micro Apex One as a... |
| CVE-2022-24671 | HIGH | 7.8 | 0.4% | Feb 24, 2022 | A link following privilege escalation vulnerability in Trend Micro Antivirus for Max 11.0.2150 and below could allow a l... |
| CVE-2022-23655 | MEDIUM | 5.3 | 0.6% | Feb 24, 2022 | Octobercms is a self-hosted CMS platform based on the Laravel PHP Framework. Affected versions of OctoberCMS did not val... |
| CVE-2022-23653 | MEDIUM | 4.7 | 0.2% | Feb 23, 2022 | B2 Command Line Tool is the official command line tool for the backblaze cloud storage service. Linux and Mac releases o... |
| CVE-2022-23651 | MEDIUM | 4.7 | 0.2% | Feb 23, 2022 | b2-sdk-python is a python library to access cloud storage provided by backblaze. Linux and Mac releases of the SDK versi... |
| CVE-2022-24409 | HIGH | 7.5 | 1.1% | Feb 23, 2022 | Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users... |
| CVE-2022-22336 | HIGH | 7.5 | 2.0% | Feb 23, 2022 | IBM Sterling External Authentication Server and IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 could allow a re... |
| CVE-2022-22333 | MEDIUM | 6.5 | 0.6% | Feb 23, 2022 | IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 and IBM Sterling External Authentication Server are vulnerable a... |
| CVE-2022-21705 | HIGH | 7.2 | 8.7% | Feb 23, 2022 | Octobercms is a self-hosted CMS platform based on the Laravel PHP Framework. In affected versions user input was not pro... |
| CVE-2022-0731 | MEDIUM | 6.5 | 1.0% | Feb 23, 2022 | Improper Access Control (IDOR) in GitHub repository dolibarr/dolibarr prior to 16.0. |
| CVE-2022-20650 | HIGH | 8.8 | 14.5% | Feb 23, 2022 | A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to execute a... |
| CVE-2022-20625 | MEDIUM | 4.3 | 3.4% | Feb 23, 2022 | A vulnerability in the Cisco Discovery Protocol service of Cisco FXOS Software and Cisco NX-OS Software could allow an u... |
| CVE-2022-20624 | HIGH | 7.5 | 12.4% | Feb 23, 2022 | A vulnerability in the Cisco Fabric Services over IP (CFSoIP) feature of Cisco NX-OS Software could allow an unauthentic... |
| CVE-2022-20623 | HIGH | 7.5 | 12.3% | Feb 23, 2022 | A vulnerability in the rate limiter for Bidirectional Forwarding Detection (BFD) traffic of Cisco NX-OS Software for Cis... |
| CVE-2022-0476 | MEDIUM | 5.5 | 1.0% | Feb 23, 2022 | Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now