2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26780 | HIGH | 8.8 | 3.0% | May 12, 2022 | Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networ... |
| CVE-2022-26518 | HIGH | 8.8 | 4.8% | May 12, 2022 | An OS command injection vulnerability exists in the console infactory_net functionality of InHand Networks InRouter302 V... |
| CVE-2022-26420 | HIGH | 8.8 | 5.8% | May 12, 2022 | An OS command injection vulnerability exists in the console infactory_port functionality of InHand Networks InRouter302 ... |
| CVE-2022-26085 | HIGH | 8.8 | 12.7% | May 12, 2022 | An OS command injection vulnerability exists in the httpd wlscan_ASP functionality of InHand Networks InRouter302 V3.5.4... |
| CVE-2022-26075 | HIGH | 8.8 | 5.8% | May 12, 2022 | An OS command injection vulnerability exists in the console infactory_wlan functionality of InHand Networks InRouter302 ... |
| CVE-2022-26042 | HIGH | 8.8 | 8.6% | May 12, 2022 | An OS command injection vulnerability exists in the daretools binary functionality of InHand Networks InRouter302 V3.5.4... |
| CVE-2022-26007 | HIGH | 7.2 | 5.3% | May 12, 2022 | An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4.... |
| CVE-2022-26002 | HIGH | 7.2 | 3.0% | May 12, 2022 | A stack-based buffer overflow vulnerability exists in the console factory functionality of InHand Networks InRouter302 V... |
| CVE-2022-25995 | HIGH | 8.8 | 2.5% | May 12, 2022 | A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4. A sp... |
| CVE-2022-22139 | HIGH | 7.3 | 0.2% | May 12, 2022 | Uncontrolled search path in the Intel(R) XTU software before version 7.3.0.33 may allow an authenticated user to potenti... |
| CVE-2022-21809 | HIGH | 8.1 | 1.7% | May 12, 2022 | A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4. A special... |
| CVE-2022-21182 | HIGH | 8.8 | 1.8% | May 12, 2022 | A privilege escalation vulnerability exists in the router configuration import functionality of InHand Networks InRouter... |
| CVE-2022-21128 | HIGH | 7.8 | 0.2% | May 12, 2022 | Insufficient control flow management in the Intel(R) Advisor software before version 7.6.0.37 may allow an authenticated... |
| CVE-2022-30002 | HIGH | 7.2 | 0.9% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=. |
| CVE-2022-29298 | HIGH | 7.5 | 44.5% | May 12, 2022 | SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal. |
| CVE-2022-1699 | HIGH | 7.5 | 1.0% | May 12, 2022 | Uncontrolled Resource Consumption in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerability can be abu... |
| CVE-2022-1698 | HIGH | 7.5 | 1.0% | May 12, 2022 | Allowing long password leads to denial of service in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerab... |
| CVE-2022-30279 | HIGH | 7.5 | 0.9% | May 12, 2022 | An issue was discovered in Stormshield Network Security (SNS) 4.3.x before 4.3.8. The event logging of the ASQ sofbus la... |
| CVE-2022-28872 | HIGH | 8.8 | 0.5% | May 12, 2022 | A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing atta... |
| CVE-2022-29885 | HIGH | 7.5 | 71.7% | May 12, 2022 | The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 ... |
| CVE-2022-1681 | HIGH | 7.2 | 1.8% | May 12, 2022 | Authentication Bypass Using an Alternate Path or Channel in GitHub repository requarks/wiki prior to 2.5.281. User can g... |
| CVE-2022-30594 | HIGH | 7.8 | 0.8% | May 12, 2022 | The Linux kernel before 5.17.2 mishandles seccomp permissions. The PTRACE_SEIZE code path allows attackers to bypass int... |
| CVE-2022-30557 | HIGH | 7.5 | 4.1% | May 11, 2022 | Foxit PDF Reader and PDF Editor before 11.2.2 have a Type Confusion issue that causes a crash because of Unsigned32 mish... |
| CVE-2022-30451 | HIGH | 8.8 | 1.5% | May 11, 2022 | An authenticated user could execute code via a SQLi vulnerability in waimairenCMS before version 9.1. |
| CVE-2022-30452 | HIGH | 7.2 | 0.9% | May 11, 2022 | ShopWind <= v3.4.2 has a Sql injection vulnerability in Database.php |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now