2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-33269HIGH7.8Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
CVE-2022-33258HIGH7.5Information disclosure due to buffer over-read in modem while reading configuration parameters.
CVE-2022-33231HIGH7.8Memory corruption due to double free in core while initializing the encryption key.
CVE-2022-33228HIGH7.5Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination opti...
CVE-2022-33223HIGH7.5Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.
CVE-2022-33222HIGH7.5Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
CVE-2022-25747HIGH7.5Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message
CVE-2022-25739HIGH7.5Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call
CVE-2022-25737HIGH7.5Information disclosure in modem due to missing NULL check while reading packets received from local network
CVE-2022-25731HIGH7.5Information disclosure in modem due to buffer over-read while processing packets from DNS server
CVE-2022-25730HIGH7.5Information disclosure in modem due to improper check of IP type while processing DNS server query
CVE-2022-25726HIGH7.5Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
CVE-2022-47605HIGH7.2Auth. SQL Injection') vulnerability in Kunal Nagar Custom 404 Pro plugin <= 3.7.0 versions.
CVE-2022-43951HIGH7.5An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6...
CVE-2022-43948HIGH7.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb versio...
CVE-2022-43947HIGH8.8An improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiOS version 7.2.0 t...
CVE-2022-43946HIGH8.1Multiple vulnerabilities including an incorrect permission assignment for critical resource [CWE-732] vulnerability and ...
CVE-2022-42470HIGH7.8A relative path traversal vulnerability in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6.2.9 an...
CVE-2022-40682HIGH7.8A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6.2.9 and 6.0.0 - 6.0....
CVE-2022-40679HIGH7.8An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC 5.x all versions...
CVE-2022-27487HIGH8.8A improper privilege management in Fortinet FortiSandbox version 4.2.0 through 4.2.2, 4.0.0 through 4.0.2 and before 3.2...
CVE-2022-43770HIGH8.1 Hitachi Vantara Pentaho Business Analytics Server versions before 9.3.0.0, 9.2.0.4 and 8.3.0.27 does not correctly perf...
CVE-2022-47338HIGH7.1In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
CVE-2022-43768HIGH7.5A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12...
CVE-2022-43767HIGH7.5A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now