2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47029 | HIGH | 7.8 | 0.4% | May 30, 2023 | An issue was found in Action Launcher v50.5 allows an attacker to escalate privilege via modification of the intent stri... |
| CVE-2022-47028 | MEDIUM | 5.5 | 0.3% | May 30, 2023 | An issue discovered in Action Launcher for Android v50.5 allows an attacker to cause a denial of service via arbitary da... |
| CVE-2022-36250 | HIGH | 8.8 | 0.3% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Cross Site Request Forgery (CS... |
| CVE-2022-36249 | MEDIUM | 5.4 | 0.4% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Bypass 2FA via APIs. For Contr... |
| CVE-2022-36247 | CRITICAL | 9.1 | 0.5% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to IDOR via controlpanel.shopbeat... |
| CVE-2022-36246 | CRITICAL | 9.8 | 0.7% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Insecure Permissions. |
| CVE-2022-36244 | MEDIUM | 5.4 | 0.3% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 suffers from Multiple Stored Cross-Site Scripti... |
| CVE-2022-36243 | MEDIUM | 5.3 | 0.7% | May 30, 2023 | Shop Beat Solutions (pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Directory Traversal via server... |
| CVE-2022-4240 | HIGH | 7.5 | 0.5% | May 30, 2023 | Missing Authentication for Critical Function vulnerability in Honeywell OneWireless allows Authentication Bypass. This i... |
| CVE-2022-46361 | MEDIUM | 6.8 | 0.3% | May 30, 2023 | An attacker having physical access to WDM can plug USB device to gain access and execute unwanted commands. A malicious ... |
| CVE-2022-43485 | MEDIUM | 6.5 | 0.5% | May 30, 2023 | Use of Insufficiently Random Values in Honeywell OneWireless. This vulnerability may allow attacker to manipulate claim... |
| CVE-2022-45853 | MEDIUM | 6.7 | 0.2% | May 30, 2023 | The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version V2.70(AAHH.3) and the GS1900-8HP firmwar... |
| CVE-2022-4676 | MEDIUM | 5.4 | 0.4% | May 30, 2023 | The OSM WordPress plugin through 6.01 does not validate and escape some of its shortcode attributes, which could allow u... |
| CVE-2022-41766 | MEDIUM | 4.3 | 0.6% | May 29, 2023 | An issue was discovered in MediaWiki before 1.35.8, 1.36.x and 1.37.x before 1.37.5, and 1.38.x before 1.38.3. Upon an a... |
| CVE-2022-24632 | MEDIUM | 5.3 | 27.2% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is directory traversal during f... |
| CVE-2022-24631 | MEDIUM | 5.4 | 42.9% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is stored XSS via the ajaxTenan... |
| CVE-2022-24630 | HIGH | 7.2 | 23.9% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. BrowseFiles.php allows a ?cmd=ssh ... |
| CVE-2022-24629 | CRITICAL | 9.8 | 37.2% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. Remote code execution can be achie... |
| CVE-2022-24628 | HIGH | 7.2 | 1.2% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is authenticated SQL injection ... |
| CVE-2022-24627 | CRITICAL | 9.8 | 26.4% | May 29, 2023 | An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is an unauthenticated SQL injec... |
| CVE-2022-24580 | — | — | — | May 29, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-24580. Reason: This candidate is a duplicate of ... |
| CVE-2022-32738 | — | — | — | May 29, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2022-32737 | — | — | — | May 29, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2022-32736 | — | — | — | May 29, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2022-32735 | — | — | — | May 29, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now