2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41591 | HIGH | 7.5 | 0.5% | Dec 20, 2022 | The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability causes unauthorized ... |
| CVE-2022-41590 | MEDIUM | 5.5 | 0.1% | Dec 20, 2022 | Some smartphones have authentication-related (including session management) vulnerabilities as the setup wizard is bypas... |
| CVE-2022-39166 | MEDIUM | 4.9 | 0.6% | Dec 20, 2022 | IBM Security Guardium 11.4 could allow a privileged user to obtain sensitive information inside of an HTTP response. IB... |
| CVE-2022-38733 | HIGH | 8.6 | 0.5% | Dec 20, 2022 | OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Wa... |
| CVE-2022-38391 | HIGH | 7.5 | 0.3% | Dec 20, 2022 | IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hig... |
| CVE-2022-23542 | CRITICAL | 9.8 | 0.9% | Dec 20, 2022 | OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. During an internal s... |
| CVE-2022-46914 | HIGH | 8.8 | 1.0% | Dec 20, 2022 | An issue in the firmware update process of TP-LINK TL-WA801N / TL-WA801ND V1 v3.12.16 and earlier allows attackers to ex... |
| CVE-2022-46912 | HIGH | 8.8 | 1.0% | Dec 20, 2022 | An issue in the firmware update process of TP-Link TL-WR841N / TL-WA841ND V7 3.13.9 and earlier allows attackers to exec... |
| CVE-2022-46910 | HIGH | 8.8 | 1.0% | Dec 20, 2022 | An issue in the firmware update process of TP-Link TL-WA901ND V1 up to v3.11.2 and TL-WA901N V2 up to v3.12.16 allows at... |
| CVE-2022-46771 | MEDIUM | 4.6 | 0.4% | Dec 20, 2022 | IBM UrbanCode Deploy (UCD) 6.2.0.0 through 6.2.7.18, 7.0.5.0 through 7.0.5.13, 7.1.0.0 through 7.1.2.9, 7.2.0.0 through... |
| CVE-2022-46435 | HIGH | 8.8 | 1.0% | Dec 20, 2022 | An issue in the firmware update process of TP-Link TL-WR941ND V2/V3 up to 3.13.9 and TL-WR941ND V4 up to 3.12.8 allows a... |
| CVE-2022-46434 | HIGH | 7.5 | 0.9% | Dec 20, 2022 | An issue in the firmware update process of TP-Link TL-WA7510N v1 v3.12.6 and earlier allows attackers to execute arbitra... |
| CVE-2022-46432 | HIGH | 7.5 | 0.8% | Dec 20, 2022 | An exploitable firmware modification vulnerability was discovered on TP-Link TL-WR743ND V1. An attacker can conduct a MI... |
| CVE-2022-46430 | MEDIUM | 4.8 | 0.3% | Dec 20, 2022 | TP-Link TL-WR740N V1 and V2 v3.12.4 and earlier allows authenticated attackers to execute arbitrary code or cause a Deni... |
| CVE-2022-46428 | MEDIUM | 4.8 | 0.3% | Dec 20, 2022 | TP-Link TL-WR1043ND V1 3.13.15 and earlier allows authenticated attackers to execute arbitrary code or cause a Denial of... |
| CVE-2022-46424 | HIGH | 8.1 | 0.8% | Dec 20, 2022 | An exploitable firmware modification vulnerability was discovered on the Netgear XWN5001 Powerline 500 WiFi Access Point... |
| CVE-2022-46423 | HIGH | 8.1 | 0.4% | Dec 20, 2022 | An exploitable firmware modification vulnerability was discovered on the Netgear WNR2000v1 router. An attacker can condu... |
| CVE-2022-46422 | MEDIUM | 4.8 | 0.3% | Dec 20, 2022 | An issue in Netgear WNR2000 v1 1.2.3.7 and earlier allows authenticated attackers to cause a Denial of Service (DoS) via... |
| CVE-2022-46139 | MEDIUM | 6.5 | 0.3% | Dec 20, 2022 | TP-Link TL-WR940N V4 3.16.9 and earlier allows authenticated attackers to cause a Denial of Service (DoS) via uploading ... |
| CVE-2022-39304 | MEDIUM | 4.7 | 0.4% | Dec 20, 2022 | ghinstallation provides transport, which implements http.RoundTripper to provide authentication as an installation for G... |
| CVE-2022-38873 | HIGH | 7.5 | 0.5% | Dec 20, 2022 | D-Link devices DAP-2310 v2.10rc036 and earlier, DAP-2330 v1.06rc020 and earlier, DAP-2360 v2.10rc050 and earlier, DAP-25... |
| CVE-2022-4579 | — | — | — | Dec 20, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2022-4515 | HIGH | 7.8 | 0.6% | Dec 20, 2022 | A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A cra... |
| CVE-2022-43875 | MEDIUM | 5.5 | 0.2% | Dec 20, 2022 | IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 could allow an authenticated user to lock ... |
| CVE-2022-43872 | MEDIUM | 5.3 | 0.5% | Dec 20, 2022 | IBM Financial Transaction Manager 3.2.4 authorization checks are done incorrectly for some HTTP requests which allows g... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now