2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33282 | HIGH | 7.8 | 0.1% | Apr 13, 2023 | Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL calls in video playba... |
| CVE-2022-33270 | MEDIUM | 5.9 | 0.3% | Apr 13, 2023 | Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message. |
| CVE-2022-33269 | HIGH | 7.8 | 0.1% | Apr 13, 2023 | Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. |
| CVE-2022-33259 | CRITICAL | 9.8 | 0.4% | Apr 13, 2023 | Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received. |
| CVE-2022-33258 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure due to buffer over-read in modem while reading configuration parameters. |
| CVE-2022-33231 | HIGH | 7.8 | 0.1% | Apr 13, 2023 | Memory corruption due to double free in core while initializing the encryption key. |
| CVE-2022-33228 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination opti... |
| CVE-2022-33223 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding. |
| CVE-2022-33222 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure due to buffer over-read while parsing DNS response packets in Modem. |
| CVE-2022-33211 | CRITICAL | 9.8 | 0.4% | Apr 13, 2023 | memory corruption in modem due to improper check while calculating size of serialized CoAP message |
| CVE-2022-25747 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message |
| CVE-2022-25745 | CRITICAL | 9.8 | 0.4% | Apr 13, 2023 | Memory corruption in modem due to improper input validation while handling the incoming CoAP message |
| CVE-2022-25740 | CRITICAL | 9.8 | 0.4% | Apr 13, 2023 | Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of ... |
| CVE-2022-25739 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call |
| CVE-2022-25737 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to missing NULL check while reading packets received from local network |
| CVE-2022-25731 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to buffer over-read while processing packets from DNS server |
| CVE-2022-25730 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to improper check of IP type while processing DNS server query |
| CVE-2022-25726 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet |
| CVE-2022-25678 | CRITICAL | 9.8 | 0.4% | Apr 13, 2023 | Memory correction in modem due to buffer overwrite during coap connection |
| CVE-2022-4463 | — | — | — | Apr 12, 2023 | Rejected reason: This candidate is unused by its CNA. |
| CVE-2022-3404 | — | — | — | Apr 12, 2023 | Rejected reason: This candidate is unused by its CNA. |
| CVE-2022-47605 | HIGH | 7.2 | 0.7% | Apr 12, 2023 | Auth. SQL Injection') vulnerability in Kunal Nagar Custom 404 Pro plugin <= 3.7.0 versions. |
| CVE-2022-47053 | MEDIUM | 5.4 | 0.4% | Apr 12, 2023 | An arbitrary file upload vulnerability in the Digital Assets Manager module of DNN Corp DotNetNuke v7.0.0 to v9.10.2 all... |
| CVE-2022-24350 | MEDIUM | 5.5 | 0.2% | Apr 12, 2023 | An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI function 0x17 verifies that t... |
| CVE-2022-48437 | MEDIUM | 5.3 | 0.4% | Apr 12, 2023 | An issue was discovered in x509/x509_verify.c in LibreSSL before 3.6.1, and in OpenBSD before 7.2 errata 001. x509_verif... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now