2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45896 | CRITICAL | 9.8 | 1.1% | Dec 25, 2022 | Planet eStream before 6.72.10.07 allows unauthenticated upload of arbitrary files: Choose a Video / Related Media or Upl... |
| CVE-2022-44640 | CRITICAL | 9.8 | 1.8% | Dec 25, 2022 | Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec use... |
| CVE-2022-44015 | CRITICAL | 9.8 | 1.2% | Dec 25, 2022 | An issue was discovered in Simmeth Lieferantenmanager before 5.6. An attacker can inject raw SQL queries. By activating ... |
| CVE-2022-44013 | CRITICAL | 9.1 | 0.9% | Dec 25, 2022 | An issue was discovered in Simmeth Lieferantenmanager before 5.6. An attacker can make various API calls without authent... |
| CVE-2022-45891 | CRITICAL | 9.1 | 0.7% | Dec 25, 2022 | Planet eStream before 6.72.10.07 allows attackers to call restricted functions, and perform unauthenticated uploads (Upl... |
| CVE-2022-47949 | CRITICAL | 9.8 | 16.9% | Dec 24, 2022 | The Nintendo NetworkBuffer class, as used in Animal Crossing: New Horizons before 2.0.6 and other products, allows remot... |
| CVE-2022-28228 | CRITICAL | 9.1 | 0.7% | Dec 23, 2022 | Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would al... |
| CVE-2022-47945 | CRITICAL | 9.8 | 15.5% | Dec 23, 2022 | ThinkPHP Framework before 6.0.14 allows local file inclusion via the lang parameter when the language pack feature is en... |
| CVE-2022-45721 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the picName parameter in the formDelWewifi... |
| CVE-2022-45720 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the ip, mac, and remark parameters... |
| CVE-2022-45719 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the gotoUrl parameter in the formPortalAut... |
| CVE-2022-45718 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formIPMacBindAd... |
| CVE-2022-45717 | CRITICAL | 9.8 | 4.3% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the usbPartitionName param... |
| CVE-2022-45716 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formIPMacBin... |
| CVE-2022-45715 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pLanPortRange and pWanPortRang... |
| CVE-2022-45714 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formQOSRuleD... |
| CVE-2022-45712 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsForwa... |
| CVE-2022-45711 | CRITICAL | 9.8 | 20.2% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the hostname parameter in ... |
| CVE-2022-45710 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pEnable, pLevel, and pModule p... |
| CVE-2022-45709 | CRITICAL | 9.8 | 4.3% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple command injection vulnerabilities via the pEnable, pLev... |
| CVE-2022-45708 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the sPortMapIndex parameter in the formDel... |
| CVE-2022-45707 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsHijac... |
| CVE-2022-45706 | CRITICAL | 9.8 | 1.1% | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the hostname parameter in the formSetNetCh... |
| CVE-2022-47939 | CRITICAL | 9.8 | 46.4% | Dec 23, 2022 | An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after... |
| CVE-2022-46642 | CRITICAL | 9.9 | 3.1% | Dec 23, 2022 | D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the auto_upgrade_hour paramet... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now