2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-25556HIGH7.5Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42E328. This vulnerability allows...
CVE-2022-25555HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allo...
CVE-2022-25554HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerabili...
CVE-2022-25553HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability ...
CVE-2022-25552HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulner...
CVE-2022-25551HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability ...
CVE-2022-25550HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerabili...
CVE-2022-25549HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability ...
CVE-2022-25548HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allo...
CVE-2022-25547HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allo...
CVE-2022-25546HIGH7.5Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability ...
CVE-2022-25325HIGH7.8Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an atta...
CVE-2022-25294HIGH7.8Proofpoint Insider Threat Management Agent for Windows relies on an inherently dangerous function that could enable an u...
CVE-2022-25234HIGH7.8Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an...
CVE-2022-25230HIGH7.8Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an atta...
CVE-2022-25225HIGH7.2Network Olympus version 1.8.0 allows an authenticated admin user to inject SQL queries in '/api/eventinstance' via the '...
CVE-2022-25219HIGH8.4A null byte interaction error has been discovered in the code that the telnetd_startup daemon uses to construct a pair o...
CVE-2022-25218HIGH8.1The use of the RSA algorithm without OAEP, or any other padding scheme, in telnetd_startup, allows an unauthenticated at...
CVE-2022-25217HIGH7.8Use of a hard-coded cryptographic key pair by the telnetd_startup service allows an attacker on the local area network t...
CVE-2022-25214HIGH7.4Improper access control on the LocalClientList.asp interface allows an unauthenticated remote attacker to obtain sensiti...
CVE-2022-25090HIGH8.1Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure ...
CVE-2022-24960HIGH7.8A use after free vulnerability was discovered in PDFTron SDK version 9.2.0. A crafted PDF can overwrite RIP with data pr...
CVE-2022-24931HIGH7.8Improper access control vulnerability in dynamic receiver in ApkInstaller prior to SMR MAR-2022 Release allows unauthori...
CVE-2022-24928HIGH7.8Security misconfiguration of RKP in kernel prior to SMR Mar-2022 Release 1 allows a system not to be protected by RKP.
CVE-2022-24915HIGH8.8The absence of filters when loading some sections in the web application of the vulnerable device allows attackers to in...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now