2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41039 | HIGH | 8.1 | 1.0% | Nov 9, 2022 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2022-39891 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | Heap overflow vulnerability in parse_pce function in libsavsaudio.so in Editor Lite prior to version 4.0.41.3 allows att... |
| CVE-2022-39890 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | Improper Authorization in Samsung Billing prior to version 5.0.56.0 allows attacker to get sensitive information. |
| CVE-2022-39883 | HIGH | 7.8 | 0.1% | Nov 9, 2022 | Improper authorization vulnerability in StorageManagerService prior to SMR Nov-2022 Release 1 allows local attacker to c... |
| CVE-2022-39882 | HIGH | 7.8 | 0.1% | Nov 9, 2022 | Heap overflow vulnerability in sflacf_fal_bytes_peek function in libsmat.so library prior to SMR Nov-2022 Release 1 allo... |
| CVE-2022-39880 | HIGH | 7.8 | 0.1% | Nov 9, 2022 | Improper input validation vulnerability in DualOutFocusViewer prior to SMR Nov-2022 Release 1 allows local attacker to p... |
| CVE-2022-39306 | HIGH | 8.1 | 0.7% | Nov 9, 2022 | Grafana is an open-source platform for monitoring and observability. Versions prior to 9.2.4, or 8.5.15 on the 8.X branc... |
| CVE-2022-38023 | HIGH | 8.1 | 2.4% | Nov 9, 2022 | Netlogon RPC Elevation of Privilege Vulnerability |
| CVE-2022-38014 | HIGH | 7 | 0.3% | Nov 9, 2022 | Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability |
| CVE-2022-37992 | HIGH | 7.8 | 0.5% | Nov 9, 2022 | Windows Group Policy Elevation of Privilege Vulnerability |
| CVE-2022-37967 | HIGH | 7.2 | 4.5% | Nov 9, 2022 | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2022-37966 | HIGH | 8.1 | 2.8% | Nov 9, 2022 | Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability |
| CVE-2022-44561 | HIGH | 7.5 | 0.3% | Nov 9, 2022 | The preset launcher module has a permission verification vulnerability. Successful exploitation of this vulnerability ma... |
| CVE-2022-44557 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | The SmartTrimProcessEvent module has a vulnerability of obtaining the read and write permissions on arbitrary system fil... |
| CVE-2022-44555 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | The DDMP/ODMF module has a service hijacking vulnerability. Successful exploit of this vulnerability may cause services ... |
| CVE-2022-44554 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | The power module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause... |
| CVE-2022-44552 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The lock screen module has defects introduced in the design process. Successful exploitation of this vulnerability may a... |
| CVE-2022-44550 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vuln... |
| CVE-2022-44549 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | The LBS module has a vulnerability in geofencing API access. Successful exploitation of this vulnerability may cause thi... |
| CVE-2022-44547 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The Display Service module has a UAF vulnerability. Successful exploitation of this vulnerability may affect the display... |
| CVE-2022-44546 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The kernel module has the vulnerability that the mapping is not cleared after the memory is automatically released. Succ... |
| CVE-2022-43310 | HIGH | 7.8 | 1.6% | Nov 9, 2022 | An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate... |
| CVE-2022-43031 | HIGH | 8.8 | 0.5% | Nov 9, 2022 | DedeCMS v6.1.9 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add A... |
| CVE-2022-27674 | HIGH | 7.5 | 0.7% | Nov 9, 2022 | Insufficient validation in the IOCTL input/output buffer in AMD μProf may allow an attacker to bypass bounds checks pote... |
| CVE-2022-27673 | HIGH | 7.5 | 0.6% | Nov 9, 2022 | Insufficient access controls in the AMD Link Android app may potentially result in information disclosure. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now