2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47517 | HIGH | 7.5 | 1.5% | Dec 18, 2022 | An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.19. It allows remote attackers to cause a... |
| CVE-2022-47516 | HIGH | 7.5 | 1.6% | Dec 18, 2022 | An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.20. It allows remote attackers to cause a... |
| CVE-2022-47515 | HIGH | 7.5 | 1.2% | Dec 18, 2022 | An issue was discovered in drachtio-server before 0.8.20. It allows remote attackers to cause a denial of service (daemo... |
| CVE-2022-47514 | HIGH | 8.8 | 1.2% | Dec 18, 2022 | An XML external entity (XXE) injection vulnerability in XML-RPC.NET before 2.5.0 allows remote authenticated users to co... |
| CVE-2022-4584 | HIGH | 8.8 | 1.0% | Dec 17, 2022 | A vulnerability was found in Axiomatic Bento4 up to 1.6.0-639. It has been rated as critical. Affected by this issue is ... |
| CVE-2022-4583 | HIGH | 8.8 | 0.8% | Dec 17, 2022 | A vulnerability was found in jLEMS. It has been declared as critical. Affected by this vulnerability is the function unp... |
| CVE-2022-4567 | HIGH | 8.1 | 0.6% | Dec 17, 2022 | Improper Access Control in GitHub repository openemr/openemr prior to 7.0.0.2. |
| CVE-2022-4572 | HIGH | 7.1 | 0.5% | Dec 17, 2022 | A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected by this issue i... |
| CVE-2022-23488 | HIGH | 7.5 | 0.6% | Dec 17, 2022 | BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are vulnerable to Insertion of Sensi... |
| CVE-2022-23531 | HIGH | 7.8 | 0.6% | Dec 17, 2022 | GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to 0.1.5 are vulnerable to Relative Path Trav... |
| CVE-2022-26582 | HIGH | 7.8 | 0.9% | Dec 16, 2022 | PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command ... |
| CVE-2022-3157 | HIGH | 7.5 | 1.4% | Dec 16, 2022 | A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-... |
| CVE-2022-47210 | HIGH | 7.8 | 0.4% | Dec 16, 2022 | The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued... |
| CVE-2022-47209 | HIGH | 8.8 | 0.5% | Dec 16, 2022 | A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for t... |
| CVE-2022-47208 | HIGH | 8.8 | 1.2% | Dec 16, 2022 | The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user i... |
| CVE-2022-3166 | HIGH | 7.5 | 0.7% | Dec 16, 2022 | Rockwell Automation was made aware that the webservers of the Micrologix 1100 and 1400 controllers contain a vulnerabil... |
| CVE-2022-2966 | HIGH | 7.5 | 0.4% | Dec 16, 2022 | Out-of-bounds Read vulnerability in Delta Electronics DOPSoft.This issue affects DOPSoft: All Versions. |
| CVE-2022-4565 | HIGH | 7.5 | 0.9% | Dec 16, 2022 | A vulnerability classified as problematic was found in Dromara HuTool up to 5.8.10. This vulnerability affects unknown c... |
| CVE-2022-4564 | HIGH | 8.8 | 0.4% | Dec 16, 2022 | A vulnerability classified as problematic has been found in University of Central Florida Materia up to 9.0.0. This affe... |
| CVE-2022-4563 | HIGH | 7.8 | 0.3% | Dec 16, 2022 | A vulnerability was found in Freedom of the Press SecureDrop. It has been rated as critical. Affected by this issue is s... |
| CVE-2022-46109 | HIGH | 7.5 | 0.9% | Dec 16, 2022 | Tenda AC15 V15.03.06.23 is vulnerable to Buffer Overflow via function formSetClientState. |
| CVE-2022-41992 | HIGH | 7.8 | 0.5% | Dec 16, 2022 | A memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerI... |
| CVE-2022-46137 | HIGH | 7.5 | 1.4% | Dec 16, 2022 | AeroCMS v0.0.1 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component... |
| CVE-2022-46135 | HIGH | 7.2 | 1.2% | Dec 16, 2022 | In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which ... |
| CVE-2022-45796 | HIGH | 7.2 | 3.2% | Dec 16, 2022 | Command injection vulnerability in nw_interface.html in SHARP multifunction printers (MFPs)'s Digital Full-color Multifu... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now