2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29477 | CRITICAL | 9.8 | 1.2% | Oct 25, 2022 | An authentication bypass vulnerability exists in the web interface /action/factory* functionality of Abode Systems, Inc.... |
| CVE-2022-29472 | CRITICAL | 9.8 | 4.4% | Oct 25, 2022 | An OS command injection vulnerability exists in the web interface util_set_serial_mac functionality of Abode Systems, In... |
| CVE-2022-27805 | CRITICAL | 9.8 | 1.3% | Oct 25, 2022 | An authentication bypass vulnerability exists in the GHOME control functionality of Abode Systems, Inc. iota All-In-One ... |
| CVE-2022-27804 | CRITICAL | 9.8 | 3.6% | Oct 25, 2022 | An os command injection vulnerability exists in the web interface util_set_abode_code functionality of Abode Systems, In... |
| CVE-2022-27623 | CRITICAL | 9.1 | 0.8% | Oct 25, 2022 | Missing authentication for critical function vulnerability in iSCSI management functionality in Synology DiskStation Man... |
| CVE-2022-40984 | CRITICAL | 9.8 | 0.8% | Oct 24, 2022 | Stack-based buffer overflow in WTViewerE series WTViewerE 761941 from 1.31 to 1.61 and WTViewerEfree from 1.01 to 1.52 a... |
| CVE-2022-39305 | CRITICAL | 9.8 | 1.1% | Oct 24, 2022 | Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stac... |
| CVE-2022-26870 | CRITICAL | 9.8 | 0.6% | Oct 21, 2022 | Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability. A remote unauthenticated attacker could... |
| CVE-2022-43400 | CRITICAL | 9.8 | 0.9% | Oct 21, 2022 | A vulnerability has been identified in Siveillance Video Mobile Server V2022 R2 (All versions < V22.2a (80)). The mobile... |
| CVE-2022-3203 | CRITICAL | 9.8 | 0.9% | Oct 21, 2022 | On ORing net IAP-420(+) with FW version 2.0m a telnet server is enabled by default and cannot permanently be disabled. Y... |
| CVE-2022-37454 | CRITICAL | 9.8 | 5.2% | Oct 21, 2022 | The Keccak XKCP SHA-3 reference implementation before fdc6fef has an integer overflow and resultant buffer overflow that... |
| CVE-2022-3620 | CRITICAL | 9.8 | 0.7% | Oct 20, 2022 | A vulnerability was found in Exim and classified as problematic. This issue affects the function dmarc_dns_lookup of the... |
| CVE-2022-42233 | CRITICAL | 9.8 | 42.7% | Oct 20, 2022 | Tenda 11N with firmware version V5.07.33_cn suffers from an Authentication Bypass vulnerability. |
| CVE-2022-42021 | CRITICAL | 9.8 | 0.8% | Oct 20, 2022 | Best Student Result Management System v1.0 is vulnerable to SQL Injection via /upresult/upresult/notice-details.php?nid=... |
| CVE-2022-37598 | CRITICAL | 9.8 | 1.3% | Oct 20, 2022 | Prototype pollution vulnerability in function DEFNODE in ast.js in mishoo UglifyJS 3.13.2 via the name variable in ast.j... |
| CVE-2022-37298 | CRITICAL | 9.8 | 2.0% | Oct 20, 2022 | Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler... |
| CVE-2022-27625 | CRITICAL | 9.8 | 1.5% | Oct 20, 2022 | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the messag... |
| CVE-2022-27624 | CRITICAL | 9.8 | 1.5% | Oct 20, 2022 | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the packet... |
| CVE-2022-3327 | CRITICAL | 9.8 | 0.7% | Oct 20, 2022 | Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6. |
| CVE-2022-43029 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the time parameter at /go... |
| CVE-2022-43028 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter at... |
| CVE-2022-43027 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the firewallEn parameter ... |
| CVE-2022-43026 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the endIp parameter at /g... |
| CVE-2022-43025 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the startIp parameter at ... |
| CVE-2022-43024 | CRITICAL | 9.8 | 0.8% | Oct 19, 2022 | Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the list parameter at /go... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now