2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-28585CRITICAL9.8EmpireCMS 7.5 has a SQL injection vulnerability in AdClass.php
CVE-2022-27962CRITICAL9.8Bluecms 1.6 has a SQL injection vulnerability at cooike.
CVE-2022-28561CRITICAL9.8There is a stack overflow vulnerability in the /goform/setMacFilterCfg function in the httpd service of Tenda ax12 22.03...
CVE-2022-28560CRITICAL9.8There is a stack overflow vulnerability in the goform/fast_setting_wifi_set function in the httpd service of Tenda ac9 1...
CVE-2022-28118CRITICAL9.8SiteServer CMS v7.x allows attackers to execute arbitrary code via a crafted plug-in.
CVE-2022-1378CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_p...
CVE-2022-1377CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_r...
CVE-2022-1376CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_p...
CVE-2022-1375CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_s...
CVE-2022-1374CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_u...
CVE-2022-1372CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in dlSlog...
CVE-2022-1371CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in ReadRe...
CVE-2022-1370CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in ReadRE...
CVE-2022-1369CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in ReadRe...
CVE-2022-1367CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in Handle...
CVE-2022-1366CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in Handle...
CVE-2022-1281CRITICAL9.8The Photo Gallery WordPress plugin through 1.6.3 does not properly escape the $_POST['filter_tag'] parameter, which is a...
CVE-2022-0783CRITICAL9.8The Multiple Shipping Address Woocommerce WordPress plugin before 2.0 does not properly sanitise and escape numerous par...
CVE-2022-0773CRITICAL9.8The Documentor WordPress plugin through 1.5.3 fails to sanitize and escape user input before it is being interpolated in...
CVE-2022-0771CRITICAL9.8The SiteSuperCharger WordPress plugin before 5.2.0 does not validate, sanitise and escape various user inputs before usi...
CVE-2022-28573CRITICAL9.8D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting...
CVE-2022-28056CRITICAL9.8ShopXO v2.2.5 and below was discovered to contain a system re-install vulnerability via the Add function in app/install/...
CVE-2022-28054CRITICAL9.8Improper sanitization of trigger action scripts in VanDyke Software VShell for Windows v4.6.2 allows attackers to execut...
CVE-2022-27982CRITICAL9.8RG-NBR-E Enterprise Gateway RG-NBR2100G-E was discovered to contain a remote code execution (RCE) vulnerability via the ...
CVE-2022-27466CRITICAL9.8MCMS v5.2.27 was discovered to contain a SQL injection vulnerability in the orderBy parameter at /dict/list.do.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now