2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36678 | CRITICAL | 9.8 | 0.9% | Aug 26, 2022 | Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /clas... |
| CVE-2022-24304 | — | — | — | Aug 26, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-2564. Reason: This candidate is a duplicate of C... |
| CVE-2022-38533 | MEDIUM | 5.5 | 0.3% | Aug 26, 2022 | In GNU Binutils before 2.40, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip... |
| CVE-2022-36226 | HIGH | 7.2 | 0.9% | Aug 26, 2022 | SiteServerCMS 5.X has a Remote-download-Getshell-vulnerability via /SiteServer/Ajax/ajaxOtherService.aspx. |
| CVE-2022-36168 | LOW | 2.7 | 0.8% | Aug 26, 2022 | A directory traversal vulnerability was discovered in Wuzhicms 4.1.0. via /coreframe/app/attachment/admin/index.php: |
| CVE-2022-36121 | MEDIUM | 5.3 | 0.6% | Aug 26, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-36120 | HIGH | 8.1 | 0.8% | Aug 26, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-35192 | HIGH | 7.5 | 1.2% | Aug 26, 2022 | D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus... |
| CVE-2022-30984 | HIGH | 7.8 | 0.2% | Aug 26, 2022 | A buffer overflow vulnerability in the Rubrik Backup Service (RBS) Agent for Linux or Unix-based systems in Rubrik CDM 7... |
| CVE-2022-29850 | HIGH | 8.1 | 0.8% | Aug 26, 2022 | Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to ... |
| CVE-2022-37318 | MEDIUM | 6.1 | 0.4% | Aug 25, 2022 | Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability. A remote unauthenticated mal... |
| CVE-2022-37317 | MEDIUM | 5.4 | 0.6% | Aug 25, 2022 | Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could poten... |
| CVE-2022-37316 | MEDIUM | 6.5 | 0.6% | Aug 25, 2022 | Archer Platform 6.8 before 6.11 P3 (6.11.0.3) contains an improper API access control vulnerability in a multi-instance ... |
| CVE-2022-36119 | HIGH | 8.8 | 1.5% | Aug 25, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-36118 | MEDIUM | 5.3 | 0.6% | Aug 25, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-36117 | LOW | 3.1 | 0.6% | Aug 25, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-36116 | MEDIUM | 5.3 | 0.7% | Aug 25, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-36115 | HIGH | 7.1 | 0.8% | Aug 25, 2022 | An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ... |
| CVE-2022-31798 | MEDIUM | 6.1 | 6.7% | Aug 25, 2022 | Nortek Linear eMerge E3-Series 0.32-07p devices are vulnerable to /card_scan.php?CardFormatNo= XSS with session fixation... |
| CVE-2022-31499 | CRITICAL | 9.8 | 64.8% | Aug 25, 2022 | Nortek Linear eMerge E3-Series devices before 0.32-08f allow an unauthenticated attacker to inject OS commands via Reade... |
| CVE-2022-28747 | CRITICAL | 9.8 | 1.2% | Aug 25, 2022 | Key reuse in GoSecure Titan Inbox Detection & Response (IDR) through 2022-04-05 leads to remote code execution. To explo... |
| CVE-2022-36721 | HIGH | 8.8 | 0.9% | Aug 25, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Textbook parameter at /ad... |
| CVE-2022-36720 | HIGH | 8.8 | 0.9% | Aug 25, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/mo... |
| CVE-2022-36719 | CRITICAL | 9.8 | 0.9% | Aug 25, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the ok parameter at /admin/hi... |
| CVE-2022-36716 | CRITICAL | 9.8 | 0.8% | Aug 25, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ch... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now