2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33269 | HIGH | 7.8 | 0.1% | Apr 13, 2023 | Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. |
| CVE-2022-33258 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure due to buffer over-read in modem while reading configuration parameters. |
| CVE-2022-33231 | HIGH | 7.8 | 0.1% | Apr 13, 2023 | Memory corruption due to double free in core while initializing the encryption key. |
| CVE-2022-33228 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination opti... |
| CVE-2022-33223 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding. |
| CVE-2022-33222 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure due to buffer over-read while parsing DNS response packets in Modem. |
| CVE-2022-25747 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message |
| CVE-2022-25739 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call |
| CVE-2022-25737 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to missing NULL check while reading packets received from local network |
| CVE-2022-25731 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to buffer over-read while processing packets from DNS server |
| CVE-2022-25730 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem due to improper check of IP type while processing DNS server query |
| CVE-2022-25726 | HIGH | 7.5 | 0.4% | Apr 13, 2023 | Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet |
| CVE-2022-47605 | HIGH | 7.2 | 0.7% | Apr 12, 2023 | Auth. SQL Injection') vulnerability in Kunal Nagar Custom 404 Pro plugin <= 3.7.0 versions. |
| CVE-2022-43951 | HIGH | 7.5 | 0.6% | Apr 11, 2023 | An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6... |
| CVE-2022-43948 | HIGH | 7.8 | 0.6% | Apr 11, 2023 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb versio... |
| CVE-2022-43947 | HIGH | 8.8 | 0.4% | Apr 11, 2023 | An improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiOS version 7.2.0 t... |
| CVE-2022-43946 | HIGH | 8.1 | 0.7% | Apr 11, 2023 | Multiple vulnerabilities including an incorrect permission assignment for critical resource [CWE-732] vulnerability and ... |
| CVE-2022-42470 | HIGH | 7.8 | 0.3% | Apr 11, 2023 | A relative path traversal vulnerability in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6.2.9 an... |
| CVE-2022-40682 | HIGH | 7.8 | 0.2% | Apr 11, 2023 | A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6.2.9 and 6.0.0 - 6.0.... |
| CVE-2022-40679 | HIGH | 7.8 | 0.2% | Apr 11, 2023 | An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC 5.x all versions... |
| CVE-2022-27487 | HIGH | 8.8 | 1.0% | Apr 11, 2023 | A improper privilege management in Fortinet FortiSandbox version 4.2.0 through 4.2.2, 4.0.0 through 4.0.2 and before 3.2... |
| CVE-2022-43770 | HIGH | 8.1 | 0.5% | Apr 11, 2023 | Hitachi Vantara Pentaho Business Analytics Server versions before 9.3.0.0, 9.2.0.4 and 8.3.0.27 does not correctly perf... |
| CVE-2022-47338 | HIGH | 7.1 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-43768 | HIGH | 7.5 | 1.0% | Apr 11, 2023 | A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12... |
| CVE-2022-43767 | HIGH | 7.5 | 0.7% | Apr 11, 2023 | A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now