2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45651 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the list parameter in the formSetVirtualSer f... |
| CVE-2022-45650 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the firewallEn parameter in the formSetFirewa... |
| CVE-2022-45649 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the endIp parameter in the formSetPPTPServer ... |
| CVE-2022-45648 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the devName parameter in the formSetDeviceNam... |
| CVE-2022-45647 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the limitSpeed parameter in the formSetClient... |
| CVE-2022-45646 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the limitSpeedUp parameter in the formSetClie... |
| CVE-2022-45645 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceMac parameter in the addWifiMacFilt... |
| CVE-2022-45644 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceId parameter in the formSetClientSt... |
| CVE-2022-45643 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the deviceId parameter in the addWifiMacFilte... |
| CVE-2022-45641 | HIGH | 7.5 | 0.8% | Dec 2, 2022 | Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg. |
| CVE-2022-44348 | HIGH | 7.2 | 0.7% | Dec 2, 2022 | Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/update_status.php?id=. |
| CVE-2022-44347 | HIGH | 7.2 | 0.7% | Dec 2, 2022 | Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=inquiries/view_inquiry&id=. |
| CVE-2022-44345 | HIGH | 7.2 | 0.7% | Dec 2, 2022 | Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=quotes/view_quote&id=. |
| CVE-2022-44277 | HIGH | 7.2 | 0.7% | Dec 2, 2022 | Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/classes/Master.php?f=delete_product. |
| CVE-2022-3591 | HIGH | 7.8 | 0.4% | Dec 2, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0789. |
| CVE-2022-43272 | HIGH | 7.5 | 1.6% | Dec 2, 2022 | DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Association object. |
| CVE-2022-2808 | HIGH | 8.8 | 0.7% | Dec 2, 2022 | Authorization Bypass Through User-Controlled Key vulnerability in Algan Software Prens Student Information System allows... |
| CVE-2022-45562 | HIGH | 8.8 | 1.0% | Dec 2, 2022 | Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 allow attackers to manipulate and access system s... |
| CVE-2022-44211 | HIGH | 7.4 | 0.6% | Dec 1, 2022 | In GL.iNet Goodcloud 1.1 Incorrect access control allows a remote attacker to access/change devices' settings. |
| CVE-2022-35120 | HIGH | 8.8 | 0.2% | Dec 1, 2022 | IXPdata EasyInstall 6.6.14725 contains an access control issue. |
| CVE-2022-42718 | HIGH | 7.8 | 0.2% | Dec 1, 2022 | Incorrect default permissions in the installation folder for NI LabVIEW Command Line Interface (CLI) may allow an authen... |
| CVE-2022-3713 | HIGH | 8.8 | 0.7% | Dec 1, 2022 | A code injection vulnerability allows adjacent attackers to execute code in the Wifi controller of Sophos Firewall relea... |
| CVE-2022-3709 | HIGH | 8.4 | 0.8% | Dec 1, 2022 | A stored XSS vulnerability allows admin to super-admin privilege escalation in the Webadmin import group wizard of Sopho... |
| CVE-2022-3696 | HIGH | 7.2 | 1.1% | Dec 1, 2022 | A post-auth code injection vulnerability allows admins to execute code in Webadmin of Sophos Firewall releases older tha... |
| CVE-2022-3226 | HIGH | 7.2 | 1.7% | Dec 1, 2022 | An OS command injection vulnerability allows admins to execute code via SSL VPN configuration uploads in Sophos Firewall... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now