2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-38076HIGH7.8Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated ...
CVE-2022-37343MEDIUM6.7Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially ena...
CVE-2022-37336MEDIUM6.7Improper input validation in BIOS firmware for some Intel(R) NUC may allow a privileged user to potentially enable escal...
CVE-2022-36392HIGH7.5Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability before versions 11.8.94,...
CVE-2022-36372MEDIUM6.7Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escala...
CVE-2022-36351MEDIUM6.5Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticate...
CVE-2022-34657MEDIUM4.4Improper input validation in firmware for some Intel(R) PCSD BIOS before version 02.01.0013 may allow a privileged user ...
CVE-2022-29887CRITICAL9.6Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthentic...
CVE-2022-29871HIGH7.8Improper access control in the Intel(R) CSME software installer before version 2239.3.7.0 may allow an authenticated use...
CVE-2022-29470HIGH7.8Improper access control in the Intel® DTT Software before version 8.7.10400.15482 may allow an authenticated user to pot...
CVE-2022-27879MEDIUM4.4Improper buffer restrictions in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentiall...
CVE-2022-27635MEDIUM6.7Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user ...
CVE-2022-25864HIGH7.8Uncontrolled search path in some Intel(R) oneMKL software before version 2022.0 may allow an authenticated user to poten...
CVE-2022-47636HIGH7.8A DLL hijacking vulnerability has been discovered in OutSystems Service Studio 11 11.53.30 build 61739. When a user open...
CVE-2022-44629MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Catalyst Connect Catalyst Connect Zoho CRM Client Port...
CVE-2022-27861MEDIUM6.1Unauth. Open Redirect vulnerability in Arscode Ninja Popups plugin <= 4.7.5 versions.
CVE-2022-48604HIGH8.8A SQL injection vulnerability exists in the “logging export” feature of the ScienceLogic SL1 that takes unsanitized user...
CVE-2022-48603HIGH8.8A SQL injection vulnerability exists in the “message viewer iframe” feature of the ScienceLogic SL1 that takes unsanitiz...
CVE-2022-48602HIGH8.8A SQL injection vulnerability exists in the “message viewer print” feature of the ScienceLogic SL1 that takes unsanitize...
CVE-2022-48601HIGH8.8A SQL injection vulnerability exists in the “network print report” feature of the ScienceLogic SL1 that takes unsanitize...
CVE-2022-48600HIGH8.8A SQL injection vulnerability exists in the “notes view” feature of the ScienceLogic SL1 that takes unsanitized user‐con...
CVE-2022-48599HIGH8.8A SQL injection vulnerability exists in the “reporter events type” feature of the ScienceLogic SL1 that takes unsanitize...
CVE-2022-48598HIGH8.8A SQL injection vulnerability exists in the “reporter events type date” feature of the ScienceLogic SL1 that takes unsan...
CVE-2022-48597HIGH8.8A SQL injection vulnerability exists in the “ticket event report” feature of the ScienceLogic SL1 that takes unsanitized...
CVE-2022-48596HIGH8.8A SQL injection vulnerability exists in the “ticket queue watchers” feature of the ScienceLogic SL1 that takes unsanitiz...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now