2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22546MEDIUM5.4Due to improper HTML encoding in input control summary, an authorized attacker can execute XSS vulnerability in SAP Busi...
CVE-2022-22545MEDIUM4.9A high privileged user who has access to transaction SM59 can read connection details stored with the destination for ht...
CVE-2022-22544CRITICAL9.1Solution Manager (Diagnostics Root Cause Analysis Tools) - version 720, allows an administrator to execute code on all c...
CVE-2022-22543HIGH7.5SAP NetWeaver Application Server for ABAP (Kernel) and ABAP Platform (Kernel) - versions KERNEL 7.22, 8.04, 7.49, 7.53, ...
CVE-2022-22542MEDIUM6.5S/4HANA Supplier Factsheet exposes the private address and bank details of an Employee Business Partner with Supplier Ro...
CVE-2022-22540HIGH7.5SAP NetWeaver AS ABAP (Workplace Server) - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 787, all...
CVE-2022-22539MEDIUM6.5When a user opens a manipulated JPEG file format (.jpg, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterpr...
CVE-2022-22538MEDIUM6.5When a user opens a manipulated Adobe Illustrator file format (.ai, ai.x3d) received from untrusted sources in SAP 3D Vi...
CVE-2022-22537MEDIUM6.5When a user opens a manipulated Tagged Image File Format (.tiff, 2d.x3d)) received from untrusted sources in SAP 3D Visu...
CVE-2022-22536CRITICAL10SAP NetWeaver Application Server ABAP, SAP NetWeaver Application Server Java, ABAP Platform, SAP Content Server 7.53 and...
CVE-2022-22535MEDIUM6.5SAP ERP HCM Portugal - versions 600, 604, 608, does not perform necessary authorization checks for a report that reads t...
CVE-2022-22534MEDIUM6.1Due to insufficient encoding of user input, SAP NetWeaver allows an unauthenticated attacker to inject code that may exp...
CVE-2022-22533HIGH7.5Due to improper error handling in SAP NetWeaver Application Server Java - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64...
CVE-2022-22532CRITICAL9.8In SAP NetWeaver Application Server Java - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC, 7.22, 7.22EXT, 7.49, 7.53, ...
CVE-2022-22528HIGH7.8SAP Adaptive Server Enterprise (ASE) - version 16.0, installation makes an entry in the system PATH environment variable...
CVE-2022-21825HIGH7.8An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection instal...
CVE-2022-21226MEDIUM5.5Out-of-bounds read in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to...
CVE-2022-21220HIGH7.8Improper restriction of XML external entity for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an a...
CVE-2022-21218MEDIUM5.5Uncaught exception in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to...
CVE-2022-21205HIGH7.5Improper restriction of XML external entity reference in DSP Builder Pro for Intel(R) Quartus(R) Prime Pro Edition befor...
CVE-2022-21204HIGH7.8Improper permissions for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to po...
CVE-2022-21203HIGH7.8Improper permissions in the SafeNet Sentinel driver for Intel(R) Quartus(R) Prime Standard Edition before version 21.1 m...
CVE-2022-21174HIGH7.8Improper access control in a third-party component of Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allo...
CVE-2022-21157MEDIUM5.5Improper access control in the Intel(R) Smart Campus Android application before version 6.1 may allow authenticated user...
CVE-2022-21156MEDIUM5.5Access of uninitialized pointer in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenti...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now