2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45509 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the account parameter at /goform/addUserName. |
| CVE-2022-45508 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the new_account parameter at /goform/editUserNa... |
| CVE-2022-45507 | HIGH | 7.5 | 0.8% | Dec 8, 2022 | Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the editNameMit parameter at /goform/editFileNa... |
| CVE-2022-45505 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the cmdinput parameter at /goform/exeCommand. |
| CVE-2022-45504 | HIGH | 7.5 | 18.3% | Dec 8, 2022 | An issue in the component tpi_systool_handle(0) (/goform/SysToolRestoreSet) of Tenda W6-S v1.0.0.4(510) allows unauthent... |
| CVE-2022-45503 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the linkEn parameter at /goform/setAutoPing. |
| CVE-2022-45501 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/wifiSSIDset. |
| CVE-2022-45499 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda W6-S v1.0.0.4(510) was discovered to contain a stack overflow via the wl_radio parameter at /goform/WifiMacFilterG... |
| CVE-2022-45498 | HIGH | 7.5 | 0.8% | Dec 8, 2022 | An issue in the component tpi_systool_handle(0) (/goform/SysToolReboot) of Tenda W6-S v1.0.0.4(510) allows unauthenticat... |
| CVE-2022-44932 | HIGH | 7.5 | 0.7% | Dec 8, 2022 | An access control issue in Tenda A18 v15.13.07.09 allows unauthenticated attackers to access the Telnet service. |
| CVE-2022-44931 | HIGH | 7.5 | 0.9% | Dec 8, 2022 | Tenda A18 v15.13.07.09 was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet. |
| CVE-2022-44455 | HIGH | 7.8 | 0.2% | Dec 8, 2022 | The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer o... |
| CVE-2022-3262 | HIGH | 8.1 | 0.7% | Dec 8, 2022 | A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may incorrectly resolve the hostname based on a ... |
| CVE-2022-39908 | HIGH | 7.4 | 0.1% | Dec 8, 2022 | TOCTOU vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attac... |
| CVE-2022-39907 | HIGH | 7.8 | 0.1% | Dec 8, 2022 | Integer overflow vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows l... |
| CVE-2022-39902 | HIGH | 7.5 | 0.8% | Dec 8, 2022 | Improper authorization in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to get sensitive inform... |
| CVE-2022-37918 | HIGH | 8.1 | 0.8% | Dec 8, 2022 | Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack... |
| CVE-2022-37917 | HIGH | 8.1 | 0.8% | Dec 8, 2022 | Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack... |
| CVE-2022-37916 | HIGH | 8.1 | 0.8% | Dec 8, 2022 | Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack... |
| CVE-2022-46792 | HIGH | 8.8 | 0.8% | Dec 8, 2022 | Hasura GraphQL Engine before 2.15.2 mishandles row-level authorization in the Update Many API for Postgres backends. The... |
| CVE-2022-23476 | HIGH | 7.5 | 1.7% | Dec 8, 2022 | Nokogiri is an open source XML and HTML library for the Ruby programming language. Nokogiri `1.13.8` and `1.13.9` fail t... |
| CVE-2022-23492 | HIGH | 7.5 | 1.0% | Dec 8, 2022 | go-libp2p is the offical libp2p implementation in the Go programming language. Version `0.18.0` and older of go-libp2p a... |
| CVE-2022-3092 | HIGH | 7.8 | 0.2% | Dec 8, 2022 | GE CIMPICITY versions 2022 and prior is vulnerable to an out-of-bounds write, which could allow an attacker to exe... |
| CVE-2022-3084 | HIGH | 7.8 | 0.2% | Dec 8, 2022 | GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmi... |
| CVE-2022-2952 | HIGH | 7.8 | 0.2% | Dec 7, 2022 | GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gm... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now