2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38768 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to bypass authoriz... |
| CVE-2022-35413 | CRITICAL | 9.8 | 12.5% | Sep 13, 2022 | WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configur... |
| CVE-2022-39815 | CRITICAL | 9.8 | 2.1% | Sep 13, 2022 | In NOKIA 1350 OMS R14.2, multiple OS Command Injection vulnerabilities occurs. This vulnerability allow unauthenticated ... |
| CVE-2022-38637 | CRITICAL | 9.8 | 4.6% | Sep 13, 2022 | Hospital Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities via the Username and Pa... |
| CVE-2022-20391 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000 |
| CVE-2022-20390 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002 |
| CVE-2022-20389 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004 |
| CVE-2022-20388 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323 |
| CVE-2022-20387 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324 |
| CVE-2022-20386 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328 |
| CVE-2022-20385 | CRITICAL | 9.8 | 0.4% | Sep 13, 2022 | a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspac... |
| CVE-2022-39206 | CRITICAL | 9.9 | 1.7% | Sep 13, 2022 | Onedev is an open source, self-hosted Git Server with CI/CD and Kanban. When using Docker-based job executors, the Docke... |
| CVE-2022-39205 | CRITICAL | 9.8 | 1.8% | Sep 13, 2022 | Onedev is an open source, self-hosted Git Server with CI/CD and Kanban. In versions of Onedev prior to 7.3.0 unauthentic... |
| CVE-2022-34722 | CRITICAL | 9.8 | 2.4% | Sep 13, 2022 | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability |
| CVE-2022-34721 | CRITICAL | 9.8 | 78.5% | Sep 13, 2022 | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability |
| CVE-2022-34718 | CRITICAL | 9.8 | 48.1% | Sep 13, 2022 | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2022-38542 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the kill... |
| CVE-2022-38541 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_ti... |
| CVE-2022-38540 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the crea... |
| CVE-2022-38539 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/app... |
| CVE-2022-38538 | CRITICAL | 9.8 | 0.9% | Sep 13, 2022 | Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the repor... |
| CVE-2022-38537 | CRITICAL | 9.8 | 0.8% | Sep 13, 2022 | Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, ... |
| CVE-2022-36779 | CRITICAL | 9.8 | 2.3% | Sep 13, 2022 | PROSCEND - PROSCEND / ADVICE .Ltd - G/5G Industrial Cellular Router (with GPS)4 Unauthenticated OS Command Injection Pro... |
| CVE-2022-37011 | CRITICAL | 9.8 | 1.0% | Sep 13, 2022 | A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 8... |
| CVE-2022-38297 | CRITICAL | 9.8 | 1.1% | Sep 12, 2022 | UCMS v1.6.0 contains an authentication bypass vulnerability which is exploited via cookie poisoning. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now