2022 CVE Vulnerabilities

27,540 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-35557HIGH7.5A stack overflow vulnerability exists in /goform/wifiSSIDget in Tenda W6 V1.0.0.9(4122) version, which can be exploited ...
CVE-2022-35555CRITICAL9.8A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which allows attackers to con...
CVE-2022-28636HIGH7.4A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process ...
CVE-2022-28635HIGH7.4A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process ...
CVE-2022-28634MEDIUM6.7A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-28633HIGH7.3A local disclosure of sensitive information and a local unauthorized data modification vulnerability were discovered in ...
CVE-2022-28632HIGH8.8A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discove...
CVE-2022-28631HIGH8.8A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discove...
CVE-2022-28630HIGH7.3A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-28629HIGH7.8A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-28628HIGH8.4A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-28627HIGH8.4A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-28626MEDIUM6.7A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s)...
CVE-2022-20362HIGH8.8In Bluetooth, there is a possible out of bounds write due to an integer overflow. This could lead to remote code executi...
CVE-2022-20342LOW3.3In WiFi, there is a possible disclosure of WiFi password to the end user due to an insecure default value. This could le...
CVE-2022-20341MEDIUM5.5In ConnectivityService, there is a possible bypass of network permissions due to a missing permission check. This could ...
CVE-2022-20340LOW3.3In SELinux policy, there is a possible way of inferring which websites are being opened in the browser due to a missing ...
CVE-2022-20339LOW3.3In Android, there is a possible access of network neighbor table information due to an insecure SEpolicy configuration. ...
CVE-2022-20338LOW3.3In HierarchicalUri.readFrom of Uri.java, there is a possible way to craft a malformed Uri object due to improper input v...
CVE-2022-20336LOW3.3In Settings, there is a possible installed application disclosure due to a missing permission check. This could lead to ...
CVE-2022-20335LOW3.3In Wifi Slice, there is a possible way to adjust Wi-Fi settings even when the permission has been disabled due to a miss...
CVE-2022-20334MEDIUM6.5In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial o...
CVE-2022-20333MEDIUM6.5In Bluetooth, there is a possible crash due to a missing null check. This could lead to remote denial of service with no...
CVE-2022-20332MEDIUM5.5In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to s...
CVE-2022-20331HIGH7.8In the Framework, there is a possible way to enable a work profile without user consent due to a tapjacking/overlay atta...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now