2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38076 | HIGH | 7.8 | 0.3% | Aug 11, 2023 | Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated ... |
| CVE-2022-37343 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially ena... |
| CVE-2022-37336 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper input validation in BIOS firmware for some Intel(R) NUC may allow a privileged user to potentially enable escal... |
| CVE-2022-36392 | HIGH | 7.5 | 0.6% | Aug 11, 2023 | Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability before versions 11.8.94,... |
| CVE-2022-36372 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escala... |
| CVE-2022-36351 | MEDIUM | 6.5 | 0.6% | Aug 11, 2023 | Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticate... |
| CVE-2022-34657 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Improper input validation in firmware for some Intel(R) PCSD BIOS before version 02.01.0013 may allow a privileged user ... |
| CVE-2022-29887 | CRITICAL | 9.6 | 0.6% | Aug 11, 2023 | Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthentic... |
| CVE-2022-29871 | HIGH | 7.8 | 0.2% | Aug 11, 2023 | Improper access control in the Intel(R) CSME software installer before version 2239.3.7.0 may allow an authenticated use... |
| CVE-2022-29470 | HIGH | 7.8 | 0.1% | Aug 11, 2023 | Improper access control in the Intel® DTT Software before version 8.7.10400.15482 may allow an authenticated user to pot... |
| CVE-2022-27879 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Improper buffer restrictions in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentiall... |
| CVE-2022-27635 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user ... |
| CVE-2022-25864 | HIGH | 7.8 | 0.1% | Aug 11, 2023 | Uncontrolled search path in some Intel(R) oneMKL software before version 2022.0 may allow an authenticated user to poten... |
| CVE-2022-47636 | HIGH | 7.8 | 1.1% | Aug 10, 2023 | A DLL hijacking vulnerability has been discovered in OutSystems Service Studio 11 11.53.30 build 61739. When a user open... |
| CVE-2022-44629 | MEDIUM | 4.8 | 0.3% | Aug 10, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Catalyst Connect Catalyst Connect Zoho CRM Client Port... |
| CVE-2022-27861 | MEDIUM | 6.1 | 0.3% | Aug 10, 2023 | Unauth. Open Redirect vulnerability in Arscode Ninja Popups plugin <= 4.7.5 versions. |
| CVE-2022-48604 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “logging export” feature of the ScienceLogic SL1 that takes unsanitized user... |
| CVE-2022-48603 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “message viewer iframe” feature of the ScienceLogic SL1 that takes unsanitiz... |
| CVE-2022-48602 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “message viewer print” feature of the ScienceLogic SL1 that takes unsanitize... |
| CVE-2022-48601 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “network print report” feature of the ScienceLogic SL1 that takes unsanitize... |
| CVE-2022-48600 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “notes view” feature of the ScienceLogic SL1 that takes unsanitized user‐con... |
| CVE-2022-48599 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “reporter events type” feature of the ScienceLogic SL1 that takes unsanitize... |
| CVE-2022-48598 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “reporter events type date” feature of the ScienceLogic SL1 that takes unsan... |
| CVE-2022-48597 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “ticket event report” feature of the ScienceLogic SL1 that takes unsanitized... |
| CVE-2022-48596 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “ticket queue watchers” feature of the ScienceLogic SL1 that takes unsanitiz... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now