2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-44402 | HIGH | 7.2 | 0.7% | Nov 17, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_transaction. |
| CVE-2022-41920 | HIGH | 8.8 | 0.8% | Nov 17, 2022 | Lancet is a general utility library for the go programming language. Affected versions are subject to a ZipSlip issue wh... |
| CVE-2022-4052 | HIGH | 7.2 | 0.5% | Nov 17, 2022 | A vulnerability was found in Student Attendance Management System and classified as critical. This issue affects some un... |
| CVE-2022-44384 | HIGH | 8.8 | 5.0% | Nov 17, 2022 | An arbitrary file upload vulnerability in rconfig v3.9.6 allows attackers to execute arbitrary code via a crafted PHP fi... |
| CVE-2022-43140 | HIGH | 7.5 | 1.9% | Nov 17, 2022 | kkFileView v4.1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component cn.keking.web.control... |
| CVE-2022-42894 | HIGH | 7.5 | 0.6% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). An unauthenticated Server-Side Reques... |
| CVE-2022-42893 | HIGH | 7.5 | 0.5% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-42891 | HIGH | 7.5 | 0.5% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-42734 | HIGH | 7.5 | 0.5% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-42733 | HIGH | 7.5 | 0.6% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-42732 | HIGH | 7.5 | 0.6% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-45461 | HIGH | 8.8 | 0.8% | Nov 17, 2022 | The Java Admin Console in Veritas NetBackup through 10.1 and related Veritas products on Linux and UNIX allows authentic... |
| CVE-2022-42982 | HIGH | 7.5 | 0.7% | Nov 17, 2022 | BKG Professional NtripCaster 2.0.39 allows querying information over the UDP protocol without authentication. The NTRIP ... |
| CVE-2022-42246 | HIGH | 8.8 | 0.3% | Nov 17, 2022 | Doufox 0.0.4 contains a CSRF vulnerability that can add system administrator account. |
| CVE-2022-44007 | HIGH | 8.8 | 0.8% | Nov 16, 2022 | An issue was discovered in BACKCLICK Professional 5.9.63. Due to an unsafe implementation of session tracking, it is pos... |
| CVE-2022-43264 | HIGH | 7.5 | 0.9% | Nov 16, 2022 | Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attackers to perform directory traversal and download ... |
| CVE-2022-24036 | HIGH | 8.6 | 0.5% | Nov 16, 2022 | Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated a... |
| CVE-2022-4013 | HIGH | 8.8 | 0.2% | Nov 16, 2022 | A vulnerability classified as problematic was found in Hospital Management Center. Affected by this vulnerability is an ... |
| CVE-2022-3920 | HIGH | 7.5 | 0.7% | Nov 16, 2022 | HashiCorp Consul and Consul Enterprise 1.13.0 up to 1.13.3 do not filter cluster filtering's imported nodes and services... |
| CVE-2022-41916 | HIGH | 7.5 | 0.9% | Nov 15, 2022 | Heimdal is an implementation of ASN.1/DER, PKIX, and Kerberos. Versions prior to 7.7.1 are vulnerable to a denial of ser... |
| CVE-2022-4006 | HIGH | 7.5 | 0.8% | Nov 15, 2022 | A vulnerability, which was classified as problematic, has been found in WBCE CMS. Affected by this issue is the function... |
| CVE-2022-29279 | HIGH | 8.2 | 0.2% | Nov 15, 2022 | Use of a untrusted pointer allows tampering with SMRAM and OS memory in SdHostDriver and SdMmcDevice Use of a untrusted ... |
| CVE-2022-29278 | HIGH | 8.2 | 0.2% | Nov 15, 2022 | Incorrect pointer checks within the NvmExpressDxe driver can allow tampering with SMRAM and OS memory Incorrect pointer ... |
| CVE-2022-29277 | HIGH | 8.8 | 0.2% | Nov 15, 2022 | Incorrect pointer checks within the the FwBlockServiceSmm driver can allow arbitrary RAM modifications During review of ... |
| CVE-2022-29276 | HIGH | 8.2 | 0.2% | Nov 15, 2022 | SMI functions in AhciBusDxe use untrusted inputs leading to corruption of SMRAM. SMI functions in AhciBusDxe use untrust... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now