2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33634 | HIGH | 8.1 | 1.1% | Oct 11, 2022 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2022-30198 | HIGH | 8.1 | 1.1% | Oct 11, 2022 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2022-24504 | HIGH | 8.1 | 1.1% | Oct 11, 2022 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2022-22035 | HIGH | 8.1 | 1.2% | Oct 11, 2022 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2022-42238 | HIGH | 8.8 | 0.8% | Oct 11, 2022 | A Vertical Privilege Escalation issue in Merchandise Online Store v.1.0 allows an attacker to get access to the admin da... |
| CVE-2022-42236 | MEDIUM | 5.4 | 0.4% | Oct 11, 2022 | A Stored XSS issue in Merchandise Online Store v.1.0 allows to injection of Arbitrary JavaScript in edit account form. |
| CVE-2022-42235 | MEDIUM | 5.4 | 0.5% | Oct 11, 2022 | A Stored XSS issue in Student Clearance System v.1.0 allows the injection of arbitrary JavaScript in the Student registr... |
| CVE-2022-42230 | HIGH | 7.2 | 0.6% | Oct 11, 2022 | Simple Cold Storage Management System v1.0 is vulnerable to SQL Injection via /csms/admin/?page=user/manage_user&id=. |
| CVE-2022-42229 | HIGH | 8.8 | 1.0% | Oct 11, 2022 | Wedding Planner v1.0 is vulnerable to Arbitrary code execution via package_edit.php. |
| CVE-2022-42034 | HIGH | 8.8 | 1.0% | Oct 11, 2022 | Wedding Planner v1.0 is vulnerable to arbitrary code execution via users_profile.php. |
| CVE-2022-3453 | MEDIUM | 5.4 | 0.3% | Oct 11, 2022 | A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been rated as problematic. This iss... |
| CVE-2022-3452 | MEDIUM | 5.4 | 0.4% | Oct 11, 2022 | A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been declared as problematic. This ... |
| CVE-2022-39296 | HIGH | 7.5 | 1.5% | Oct 11, 2022 | MelisAssetManager provides deliveries of Melis Platform's assets located in every module's public folder. Attackers can ... |
| CVE-2022-41376 | MEDIUM | 6.1 | 0.5% | Oct 11, 2022 | Metro UI v4.4.0 to v4.5.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Javascr... |
| CVE-2022-34434 | MEDIUM | 6.7 | 0.2% | Oct 11, 2022 | Cloud Mobility for Dell Storage versions 1.3.0 and earlier contains an Improper Access Control vulnerability within the ... |
| CVE-2022-34432 | HIGH | 8.2 | 0.4% | Oct 11, 2022 | Dell Hybrid Client below 1.8 version contains a gedit vulnerability. A guest attacker could potentially exploit this vul... |
| CVE-2022-34431 | MEDIUM | 6.5 | 0.5% | Oct 11, 2022 | Dell Hybrid Client below 1.8 version contains a guest user profile corruption vulnerability. A WMS privilege attacker co... |
| CVE-2022-34430 | HIGH | 7.5 | 0.5% | Oct 11, 2022 | Dell Hybrid Client below 1.8 version contains a Zip Bomb Vulnerability in UI. A guest privilege attacker could potential... |
| CVE-2022-34427 | HIGH | 8.8 | 2.1% | Oct 11, 2022 | Dell Container Storage Modules 1.2 contains an OS Command Injection in goiscsi and gobrick libraries. A remote unauthent... |
| CVE-2022-34426 | HIGH | 8.8 | 1.5% | Oct 11, 2022 | Dell Container Storage Modules 1.2 contains an Improper Limitation of a Pathname to a Restricted Directory in goiscsi an... |
| CVE-2022-33978 | MEDIUM | 6.1 | 0.4% | Oct 11, 2022 | Reflected Cross-Site Scripting (XSS) vulnerability FontMeister plugin <= 1.08 at WordPress. |
| CVE-2022-32492 | HIGH | 8.8 | 0.2% | Oct 11, 2022 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl... |
| CVE-2022-32486 | HIGH | 8.8 | 0.2% | Oct 11, 2022 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl... |
| CVE-2022-38388 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | IBM Navigator Mobile Android 3.4.1.1 and 3.4.1.2 app could allow a local user to obtain sensitive information due to imp... |
| CVE-2022-3358 | HIGH | 7.5 | 2.8% | Oct 11, 2022 | OpenSSL supports creating a custom cipher via the legacy EVP_CIPHER_meth_new() function and associated function calls. T... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now