2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-3405HIGH8.8Code execution and sensitive information disclosure due to excessive privileges assigned to Acronis Agent. The following...
CVE-2022-30995HIGH7.5Sensitive information disclosure due to improper authentication. The following products are affected: Acronis Cyber Prot...
CVE-2022-30759HIGH8.8In Nokia One-NDS (aka Network Directory Server) through 20.9, some Sudo permissions can be exploited by some users to es...
CVE-2022-47878HIGH8.8Incorrect input validation for the default-storage-path in the settings page in Jedox 2020.2.5 allows remote, authentica...
CVE-2022-47877MEDIUM5.4A Stored cross-site scripting vulnerability in Jedox 2020.2.5 allows remote, authenticated users to inject arbitrary web...
CVE-2022-47876HIGH8.8The integrator in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to create Jobs to execute arbitrary code v...
CVE-2022-47875HIGH8.8A Directory Traversal vulnerability in /be/erpc.php in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to ex...
CVE-2022-47874MEDIUM6.5Improper Access Control in /tc/rpc in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to view details of dat...
CVE-2022-40504HIGH7.5Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
CVE-2022-33273MEDIUM5.5Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation.
CVE-2022-40508HIGH7.5Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is ...
CVE-2022-40505HIGH7.5Information disclosure due to buffer over-read in Modem while parsing DNS hostname.
CVE-2022-34144HIGH7.5Transient DOS due to reachable assertion in Modem during OSI decode scheduling.
CVE-2022-33305HIGH7.5Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.
CVE-2022-33304HIGH7.5Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.
CVE-2022-33292HIGH7.8Memory corruption in Qualcomm IPC due to use after free while receiving the incoming packet and reposting it.
CVE-2022-33281HIGH7.8Memory corruption due to improper validation of array index in computer vision while testing EVA kernel without sending ...
CVE-2022-25713HIGH7.8Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exp...
CVE-2022-48483HIGH7.53CX before 18 Hotfix 1 build 18.0.3.461 on Windows allows unauthenticated remote attackers to read %WINDIR%\system32 fil...
CVE-2022-48482HIGH7.53CX before 18 Update 2 Security Hotfix build 18.0.2.315 on Windows allows unauthenticated remote attackers to read certa...
CVE-2022-35898CRITICAL9.8OpenText BizManager before 16.6.0.1 does not perform proper validation during the change-password operation. This allows...
CVE-2022-4568HIGH7A directory permissions management vulnerability in Lenovo System Update may allow elevation of privileges.
CVE-2022-48186MEDIUM6.2A certificate validation vulnerability exists in the Baiying Android application which could lead to information disclos...
CVE-2022-46365CRITICAL9.1Apache StreamPark 1.0.0 before 2.0.0 When the user successfully logs in, to modify his profile, the username will be pas...
CVE-2022-45802CRITICAL9.8Streampark allows any users to upload a jar as application, but there is no mandatory verification of the uploaded file ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now