2022 CVE Vulnerabilities
27,540 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-35557 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/wifiSSIDget in Tenda W6 V1.0.0.9(4122) version, which can be exploited ... |
| CVE-2022-35555 | CRITICAL | 9.8 | 25.0% | Aug 12, 2022 | A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which allows attackers to con... |
| CVE-2022-28636 | HIGH | 7.4 | 0.2% | Aug 12, 2022 | A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process ... |
| CVE-2022-28635 | HIGH | 7.4 | 0.2% | Aug 12, 2022 | A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process ... |
| CVE-2022-28634 | MEDIUM | 6.7 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-28633 | HIGH | 7.3 | 0.2% | Aug 12, 2022 | A local disclosure of sensitive information and a local unauthorized data modification vulnerability were discovered in ... |
| CVE-2022-28632 | HIGH | 8.8 | 0.4% | Aug 12, 2022 | A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discove... |
| CVE-2022-28631 | HIGH | 8.8 | 0.4% | Aug 12, 2022 | A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discove... |
| CVE-2022-28630 | HIGH | 7.3 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-28629 | HIGH | 7.8 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-28628 | HIGH | 8.4 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-28627 | HIGH | 8.4 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-28626 | MEDIUM | 6.7 | 0.2% | Aug 12, 2022 | A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)... |
| CVE-2022-20362 | HIGH | 8.8 | 0.2% | Aug 12, 2022 | In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to remote code executi... |
| CVE-2022-20342 | LOW | 3.3 | 0.1% | Aug 12, 2022 | In WiFi, there is a possible disclosure of WiFi password to the end user due to an insecure default value. This could le... |
| CVE-2022-20341 | MEDIUM | 5.5 | 0.1% | Aug 12, 2022 | In ConnectivityService, there is a possible bypass of network permissions due to a missing permission check. This could ... |
| CVE-2022-20340 | LOW | 3.3 | 0.1% | Aug 12, 2022 | In SELinux policy, there is a possible way of inferring which websites are being opened in the browser due to a missing ... |
| CVE-2022-20339 | LOW | 3.3 | 0.1% | Aug 12, 2022 | In Android, there is a possible access of network neighbor table information due to an insecure SEpolicy configuration. ... |
| CVE-2022-20338 | LOW | 3.3 | 0.2% | Aug 12, 2022 | In HierarchicalUri.readFrom of Uri.java, there is a possible way to craft a malformed Uri object due to improper input v... |
| CVE-2022-20336 | LOW | 3.3 | 0.1% | Aug 12, 2022 | In Settings, there is a possible installed application disclosure due to a missing permission check. This could lead to ... |
| CVE-2022-20335 | LOW | 3.3 | 0.1% | Aug 12, 2022 | In Wifi Slice, there is a possible way to adjust Wi-Fi settings even when the permission has been disabled due to a miss... |
| CVE-2022-20334 | MEDIUM | 6.5 | 0.2% | Aug 12, 2022 | In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial o... |
| CVE-2022-20333 | MEDIUM | 6.5 | 0.2% | Aug 12, 2022 | In Bluetooth, there is a possible crash due to a missing null check. This could lead to remote denial of service with no... |
| CVE-2022-20332 | MEDIUM | 5.5 | 0.1% | Aug 12, 2022 | In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to s... |
| CVE-2022-20331 | HIGH | 7.8 | 0.1% | Aug 12, 2022 | In the Framework, there is a possible way to enable a work profile without user consent due to a tapjacking/overlay atta... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now