2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-45509HIGH7.5Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the account parameter at /goform/addUserName.
CVE-2022-45508HIGH7.5Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the new_account parameter at /goform/editUserNa...
CVE-2022-45507HIGH7.5Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the editNameMit parameter at /goform/editFileNa...
CVE-2022-45505HIGH7.5Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the cmdinput parameter at /goform/exeCommand.
CVE-2022-45504HIGH7.5An issue in the component tpi_systool_handle(0) (/goform/SysToolRestoreSet) of Tenda W6-S v1.0.0.4(510) allows unauthent...
CVE-2022-45503HIGH7.5Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the linkEn parameter at /goform/setAutoPing.
CVE-2022-45501HIGH7.5Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/wifiSSIDset.
CVE-2022-45499HIGH7.5Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/WifiMacFilterG...
CVE-2022-45498HIGH7.5An issue in the component tpi_systool_handle(0) (/goform/SysToolReboot) of Tenda W6-S v1.0.0.4(510) allows unauthenticat...
CVE-2022-44932HIGH7.5An access control issue in Tenda A18 v15.13.07.09 allows unauthenticated attackers to access the Telnet service.
CVE-2022-44931HIGH7.5Tenda A18 v15.13.07.09 was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet.
CVE-2022-44455HIGH7.8The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer o...
CVE-2022-3262HIGH8.1A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may incorrectly resolve the hostname based on a ...
CVE-2022-39908HIGH7.4TOCTOU vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attac...
CVE-2022-39907HIGH7.8Integer overflow vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows l...
CVE-2022-39902HIGH7.5Improper authorization in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to get sensitive inform...
CVE-2022-37918HIGH8.1Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack...
CVE-2022-37917HIGH8.1Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack...
CVE-2022-37916HIGH8.1Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack...
CVE-2022-46792HIGH8.8Hasura GraphQL Engine before 2.15.2 mishandles row-level authorization in the Update Many API for Postgres backends. The...
CVE-2022-23476HIGH7.5Nokogiri is an open source XML and HTML library for the Ruby programming language. Nokogiri `1.13.8` and `1.13.9` fail t...
CVE-2022-23492HIGH7.5go-libp2p is the offical libp2p implementation in the Go programming language. Version `0.18.0` and older of go-libp2p a...
CVE-2022-3092HIGH7.8GE CIMPICITY versions 2022 and prior is vulnerable to an out-of-bounds write, which could allow an attacker to exe...
CVE-2022-3084HIGH7.8GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmi...
CVE-2022-2952HIGH7.8GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gm...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now