2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36613 | HIGH | 7.8 | 0.3% | Aug 29, 2022 | TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a hardcoded password for root at /etc/shadow.sample. |
| CVE-2022-36612 | HIGH | 7.8 | 0.3% | Aug 29, 2022 | TOTOLINK A950RG V4.1.2cu.5204_B20210112 was discovered to contain a hardcoded password for root at /etc/shadow.sample. |
| CVE-2022-36611 | HIGH | 7.8 | 0.3% | Aug 29, 2022 | TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample. |
| CVE-2022-36610 | HIGH | 7.8 | 0.3% | Aug 29, 2022 | TOTOLINK A720R V4.1.5cu.532_B20210610 was discovered to contain a hardcoded password for root at /etc/shadow.sample. |
| CVE-2022-36573 | MEDIUM | 6.1 | 0.5% | Aug 29, 2022 | A cross-site scripting (XSS) vulnerability in Pagekit CMS v1.0.18 allows attackers to execute arbitrary web scripts or H... |
| CVE-2022-36572 | CRITICAL | 9.8 | 21.1% | Aug 29, 2022 | Sinsiu Sinsiu Enterprise Website System v1.1.1.0 was discovered to contain a remote code execution (RCE) vulnerability v... |
| CVE-2022-36708 | CRITICAL | 9.8 | 0.9% | Aug 28, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at /student/... |
| CVE-2022-36707 | — | — | — | Aug 28, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-2214. Reason: This candidate is a reservation du... |
| CVE-2022-36706 | CRITICAL | 9.8 | 0.9% | Aug 28, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at... |
| CVE-2022-36705 | CRITICAL | 9.8 | 0.9% | Aug 28, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at... |
| CVE-2022-36704 | HIGH | 8.8 | 0.8% | Aug 28, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at /libraria... |
| CVE-2022-38571 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a buffer overflow in the function formSetGuideListItem. |
| CVE-2022-38570 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow in the function formDelPushedAd. This vulnerability ... |
| CVE-2022-38569 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow in the function formDelAd. |
| CVE-2022-38568 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools.... |
| CVE-2022-38567 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow vulnerability in the function formSetAdConfigInfo. T... |
| CVE-2022-38566 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formEmailTest. T... |
| CVE-2022-38565 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formEmailTest. T... |
| CVE-2022-38564 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a buffer overflow vulnerability in the function formSetPicListItem. T... |
| CVE-2022-38563 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools.... |
| CVE-2022-38562 | HIGH | 7.5 | 0.8% | Aug 28, 2022 | Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools.... |
| CVE-2022-38555 | CRITICAL | 9.8 | 12.2% | Aug 28, 2022 | Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name. |
| CVE-2022-37056 | CRITICAL | 9.8 | 10.2% | Aug 28, 2022 | D-Link GO-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 is vulnerable to Command Injection via /cgibin,... |
| CVE-2022-37055 | CRITICAL | 9.8 | 57.0% | Aug 28, 2022 | D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, h... |
| CVE-2022-38557 | CRITICAL | 9.8 | 0.8% | Aug 28, 2022 | D-Link DIR845L v1.00-v1.03 contains a Static Default Credential vulnerability in /etc/init0.d/S80telnetd.sh. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now