2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-26942HIGH8.2The Motorola MTM5000 series firmwares lack pointer validation on arguments passed to trusted execution environment (TEE)...
CVE-2022-26941HIGH8.8A format string vulnerability exists in Motorola MTM5000 series firmware AT command handler for the AT+CTGL command. An ...
CVE-2022-25334HIGH8.8The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signat...
CVE-2022-25333HIGH8.8The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) performs an RSA check implemented ...
CVE-2022-24404HIGH7.5Lack of cryptographic integrity check on TETRA air-interface encrypted traffic. Since a stream cipher is employed, this ...
CVE-2022-24402HIGH7.5The TETRA TEA1 keystream generator implements a key register initialization function that compresses the 80-bit key to o...
CVE-2022-24401HIGH8.1Adversary-induced keystream re-use on TETRA air-interface encrypted traffic using any TEA keystream generator. IV genera...
CVE-2022-22385HIGH7.5 IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information to an attacked due to the transmiss...
CVE-2022-22375HIGH8.8 IBM Security Verify Privilege On-Premises 11.5 could allow a remote authenticated attacker to execute arbitrary command...
CVE-2022-43740HIGH7.5IBM Security Verify Access OIDC Provider could allow a remote user to cause a denial of service due to uncontrolled reso...
CVE-2022-33165HIGH7.5IBM Security Directory Server 6.4.0 could allow a remote attacker to traverse directories on the system. An attacker cou...
CVE-2022-44757HIGH8.2BigFix Insights for Vulnerability Remediation (IVR) uses weak cryptography that can lead to credential exposure. An att...
CVE-2022-22298HIGH7.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiIsolator v...
CVE-2022-30527HIGH7.8A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application assigns improper access...
CVE-2022-3431HIGH7.8A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that wa...
CVE-2022-33160HIGH7.5IBM Security Directory Suite 8.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to de...
CVE-2022-47175HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in P Royal Royal Elementor Addons and Templates plugin <= 1.3.75 version...
CVE-2022-3248HIGH7.5A flaw was found in OpenShift API, as admission checks do not enforce "custom-host" permissions. This issue could allow ...
CVE-2022-22447HIGH7.5IBM Disconnected Log Collector 1.0 through 1.8.2 is vulnerable to potential security misconfigurations that could disclo...
CVE-2022-47892HIGH7.5All versions of NetMan 204 could allow an unauthenticated remote attacker to read a file (config.cgi) containing sensiti...
CVE-2022-47891HIGH8.8All versions of NetMan 204 allow an attacker that knows the MAC and serial number of the device to reset the administrat...
CVE-2022-46841HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Soflyy Oxygen Builder plugin <= 4.4 versions.
CVE-2022-4956HIGH7.8A vulnerability classified as critical has been found in Caphyon Advanced Installer 19.7. This affects an unknown part o...
CVE-2022-35908HIGH8.8Cambium Enterprise Wi-Fi System Software before 6.4.2 does not sanitize the ping host argument in device-agent.
CVE-2022-48606HIGH7.5Stability-related vulnerability in the binder background management and control module. Successful exploitation of this ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now