2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28770 | MEDIUM | 6.1 | 0.8% | Apr 12, 2022 | Due to insufficient input validation, SAPUI5 library(vbm) - versions 750, 753, 754, 755, 75, allows an unauthenticated a... |
| CVE-2022-28216 | MEDIUM | 6.1 | 0.8% | Apr 12, 2022 | SAP BusinessObjects Business Intelligence Platform (BI Workspace) - version 420, is susceptible to a Cross-Site Scriptin... |
| CVE-2022-28215 | MEDIUM | 4.7 | 0.8% | Apr 12, 2022 | SAP NetWeaver ABAP Server and ABAP Platform - versions 740, 750, 787, allows an unauthenticated attacker to redirect use... |
| CVE-2022-27671 | MEDIUM | 6.5 | 1.2% | Apr 12, 2022 | A CSRF token visible in the URL may possibly lead to information disclosure vulnerability. |
| CVE-2022-27670 | MEDIUM | 6.5 | 0.9% | Apr 12, 2022 | SAP SQL Anywhere - version 17.0, allows an authenticated attacker to prevent legitimate users from accessing a SQL Anywh... |
| CVE-2022-27655 | MEDIUM | 6.5 | 1.1% | Apr 12, 2022 | When a user opens a manipulated Universal 3D (.u3d, 3difr.x3d) received from untrusted sources in SAP 3D Visual Enterpri... |
| CVE-2022-27654 | MEDIUM | 6.5 | 1.1% | Apr 12, 2022 | When a user opens a manipulated Photoshop Document (.psd, 2d.x3d) received from untrusted sources in SAP 3D Visual Enter... |
| CVE-2022-26109 | MEDIUM | 6.5 | 0.9% | Apr 12, 2022 | When a user opens a manipulated Portable Document Format (.pdf, PDFView.x3d) received from untrusted sources in SAP 3D V... |
| CVE-2022-26108 | MEDIUM | 6.5 | 0.8% | Apr 12, 2022 | When a user opens a manipulated Picture Exchange (.pcx, 2d.x3d) received from untrusted sources in SAP 3D Visual Enterpr... |
| CVE-2022-26107 | MEDIUM | 6.5 | 0.9% | Apr 12, 2022 | When a user opens a manipulated Jupiter Tesselation (.jt, JTReader.x3d) received from untrusted sources in SAP 3D Visual... |
| CVE-2022-26106 | MEDIUM | 6.5 | 0.9% | Apr 12, 2022 | When a user opens a manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) received from untrusted sources in SAP 3D... |
| CVE-2022-26105 | MEDIUM | 6.1 | 0.8% | Apr 12, 2022 | SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, is susceptible to script execution ... |
| CVE-2022-23702 | MEDIUM | 6.7 | 0.2% | Apr 12, 2022 | A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 Servers. The vulnera... |
| CVE-2022-22541 | MEDIUM | 6.5 | 0.7% | Apr 12, 2022 | SAP BusinessObjects Business Intelligence Platform - versions 420, 430, may allow legitimate users to access information... |
| CVE-2022-21202 | MEDIUM | 5.5 | 0.7% | Apr 12, 2022 | The affected product is vulnerable to an out-of-bounds read, which may result in disclosure of sensitive information. |
| CVE-2022-21168 | MEDIUM | 5.5 | 0.7% | Apr 12, 2022 | The affected product is vulnerable due to an invalid pointer initialization, which may lead to information disclosure. |
| CVE-2022-24248 | MEDIUM | 6.5 | 20.4% | Apr 12, 2022 | RiteCMS version 3.1.0 and below suffers from an arbitrary file deletion via path traversal vulnerability in Admin Panel.... |
| CVE-2022-24247 | MEDIUM | 6.5 | 3.8% | Apr 12, 2022 | RiteCMS version 3.1.0 and below suffers from an arbitrary file overwrite via path traversal vulnerability in Admin Panel... |
| CVE-2022-0878 | MEDIUM | 6.5 | 0.5% | Apr 12, 2022 | Electric Vehicle (EV) commonly utilises the Combined Charging System (CCS) for DC rapid charging. To exchange important ... |
| CVE-2022-0140 | MEDIUM | 5.3 | 3.8% | Apr 12, 2022 | The Visual Form Builder WordPress plugin before 3.0.6 does not perform access control on entry form export, allowing una... |
| CVE-2022-28662 | MEDIUM | 6.5 | 0.8% | Apr 12, 2022 | A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.2). The affected application contains an ... |
| CVE-2022-28329 | MEDIUM | 6.5 | 0.4% | Apr 12, 2022 | A vulnerability has been identified in SCALANCE W1788-1 M12 (All versions < V3.0.0), SCALANCE W1788-2 EEC M12 (All versi... |
| CVE-2022-27481 | MEDIUM | 5.3 | 0.2% | Apr 12, 2022 | A vulnerability has been identified in SCALANCE W1788-1 M12 (All versions < V3.0.0), SCALANCE W1788-2 EEC M12 (All versi... |
| CVE-2022-25756 | MEDIUM | 6.1 | 0.5% | Apr 12, 2022 | A vulnerability has been identified in SCALANCE X302-7 EEC (230V), SCALANCE X302-7 EEC (230V, coated), SCALANCE X302-7 E... |
| CVE-2022-25650 | MEDIUM | 6.5 | 0.6% | Apr 12, 2022 | A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.27), Mendix Applications... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now