2022 CVE Vulnerabilities
27,531 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-35846 | CRITICAL | 9.8 | 0.7% | Oct 18, 2022 | An improper restriction of excessive authentication attempts vulnerability [CWE-307] in FortiTester Telnet port 2.3.0 th... |
| CVE-2022-35844 | HIGH | 7.2 | 0.3% | Oct 18, 2022 | An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface ... |
| CVE-2022-42202 | MEDIUM | 6.1 | 0.4% | Oct 18, 2022 | TP-Link TL-WR841N 8.0 4.17.16 Build 120201 Rel.54750n is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-3587 | MEDIUM | 5.4 | 0.5% | Oct 18, 2022 | A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been declared as problemat... |
| CVE-2022-36439 | MEDIUM | 6 | 0.2% | Oct 18, 2022 | AsusSoftwareManager.exe in ASUS System Control Interface on ASUS personal computers (running Windows) allows a local use... |
| CVE-2022-36438 | HIGH | 7.8 | 0.2% | Oct 18, 2022 | AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading to local privilege escal... |
| CVE-2022-40889 | CRITICAL | 9.8 | 1.0% | Oct 18, 2022 | Phpok 6.1 has a deserialization vulnerability via framework/phpok_call.php. |
| CVE-2022-3585 | MEDIUM | 4.3 | 0.3% | Oct 18, 2022 | A vulnerability classified as problematic has been found in SourceCodester Simple Cold Storage Management System 1.0. Af... |
| CVE-2022-3584 | HIGH | 8.8 | 0.7% | Oct 18, 2022 | A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been rated as critical. This issue aff... |
| CVE-2022-3583 | CRITICAL | 9.8 | 0.7% | Oct 18, 2022 | A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulner... |
| CVE-2022-3582 | LOW | 3.5 | 0.3% | Oct 18, 2022 | A vulnerability has been found in SourceCodester Simple Cold Storage Management System 1.0 and classified as problematic... |
| CVE-2022-3581 | MEDIUM | 6.1 | 0.3% | Oct 18, 2022 | A vulnerability, which was classified as problematic, was found in SourceCodester Cashier Queuing System 1.0. Affected i... |
| CVE-2022-3580 | MEDIUM | 6.1 | 0.3% | Oct 18, 2022 | A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier Queuing System 1.0.1. Thi... |
| CVE-2022-3579 | CRITICAL | 9.8 | 0.6% | Oct 18, 2022 | A vulnerability classified as critical was found in SourceCodester Cashier Queuing System 1.0. This vulnerability affect... |
| CVE-2022-3339 | MEDIUM | 6.1 | 0.6% | Oct 18, 2022 | A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 Update 14 allows a remote unauthenticated atta... |
| CVE-2022-3338 | MEDIUM | 5.4 | 0.5% | Oct 18, 2022 | An External XML entity (XXE) vulnerability in ePO prior to 5.10 Update 14 can lead to an unauthenticated remote attacker... |
| CVE-2022-31122 | HIGH | 8.1 | 0.6% | Oct 18, 2022 | Wire is an encrypted communication and collaboration platform. Versions prior to 2022-07-12/Chart 4.19.0 are subject to ... |
| CVE-2022-31037 | MEDIUM | 5.4 | 0.4% | Oct 18, 2022 | OroCommerce is an open-source Business to Business Commerce application. Versions between 4.1.0 and 4.1.17 inclusive, 4.... |
| CVE-2022-39058 | HIGH | 7.5 | 1.7% | Oct 18, 2022 | RAVA certification validation system has a path traversal vulnerability. An unauthenticated remote attacker can exploit ... |
| CVE-2022-39057 | HIGH | 7.2 | 0.7% | Oct 18, 2022 | RAVA certificate validation system has insufficient filtering for special parameter of the web page input field. A remot... |
| CVE-2022-39056 | CRITICAL | 9.8 | 0.8% | Oct 18, 2022 | RAVA certificate validation system has insufficient validation for user input. An unauthenticated remote attacker can in... |
| CVE-2022-39055 | MEDIUM | 5.3 | 0.4% | Oct 18, 2022 | RAVA certificate validation system has inadequate filtering for URL parameter. An unauthenticated remote attacker can pe... |
| CVE-2022-22251 | HIGH | 7.8 | 0.2% | Oct 18, 2022 | On cSRX Series devices software permission issues in the container filesystem and stored files combined with storing pas... |
| CVE-2022-22250 | MEDIUM | 6.5 | 0.3% | Oct 18, 2022 | An Improper Control of a Resource Through its Lifetime vulnerability in Packet Forwarding Engine (PFE) of Juniper Networ... |
| CVE-2022-22249 | MEDIUM | 6.5 | 0.4% | Oct 18, 2022 | An Improper Control of a Resource Through its Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Ne... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now