2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48301 | HIGH | 7.5 | 0.3% | Feb 9, 2023 | The bundle management module lacks permission verification in some APIs. Successful exploitation of this vulnerability m... |
| CVE-2022-48300 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The WMS module lacks the authentication mechanism in some APIs. Successful exploitation of this vulnerability may affect... |
| CVE-2022-48299 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The WMS module lacks the authentication mechanism in some APIs. Successful exploitation of this vulnerability may affect... |
| CVE-2022-48298 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The geofencing kernel code does not verify the length of the input data. Successful exploitation of this vulnerability m... |
| CVE-2022-48297 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The geofencing kernel code has a vulnerability of not verifying the length of the input data. Successful exploitation of... |
| CVE-2022-48295 | HIGH | 7.5 | 0.3% | Feb 9, 2023 | The IHwAntiMalPlugin interface lacks permission verification. Successful exploitation of this vulnerability can lead to ... |
| CVE-2022-48294 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The IHwAttestationService interface has a defect in authentication. Successful exploitation of this vulnerability may af... |
| CVE-2022-48289 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The bundle management module lacks authentication and control mechanisms in some APIs. Successful exploitation of this v... |
| CVE-2022-48288 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The bundle management module lacks authentication and control mechanisms in some APIs. Successful exploitation of this v... |
| CVE-2022-48287 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The HwContacts module has a logic bypass vulnerability. Successful exploitation of this vulnerability may affect data in... |
| CVE-2022-48286 | HIGH | 7.5 | 0.4% | Feb 9, 2023 | The multi-screen collaboration module has a privilege escalation vulnerability. Successful exploitation of this vulnerab... |
| CVE-2022-43440 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Uncontrolled Search Path Element in Checkmk Agent in Tribe29 Checkmk before 2.1.0p1, before 2.0.0p25 and before 1.6.0p29... |
| CVE-2022-47648 | HIGH | 8.8 | 0.4% | Feb 8, 2023 | An Improper Access Control vulnerability allows an attacker to access the control panel of the B420 without requiring an... |
| CVE-2022-38777 | HIGH | 7.8 | 0.3% | Feb 8, 2023 | An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged... |
| CVE-2022-4450 | HIGH | 7.5 | 20.4% | Feb 8, 2023 | The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and decodes the "name" (e.g. "CERTIFICATE"), any h... |
| CVE-2022-34350 | HIGH | 7.5 | 0.6% | Feb 8, 2023 | IBM API Connect 10.0.0.0 through 10.0.5.0, 10.0.1.0 through 10.0.1.7, and 2018.4.1.0 through 2018.4.1.20 is vulnerable t... |
| CVE-2022-42438 | HIGH | 8.8 | 0.5% | Feb 8, 2023 | IBM Cloud Pak for Multicloud Management Monitoring 2.0 and 2.3 allows users without admin roles access to admin function... |
| CVE-2022-41620 | HIGH | 8.8 | 0.3% | Feb 8, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in SeoSamba for WordPress Webmasters plugin <= 1.0.5 versions. |
| CVE-2022-43765 | HIGH | 7.5 | 0.6% | Feb 8, 2023 | B&R APROL versions < R 4.2-07 doesn’t process correctly specially formatted data packages sent to port 55502/tcp, which ... |
| CVE-2022-43763 | HIGH | 7.5 | 0.6% | Feb 8, 2023 | Insufficient check of preconditions could lead to Denial of Service conditions when calling commands on the Tbase server... |
| CVE-2022-43761 | HIGH | 7.5 | 0.6% | Feb 8, 2023 | Missing authentication when creating and managing the B&R APROL database in versions < R 4.2-07 allows reading and ch... |
| CVE-2022-46663 | HIGH | 7.5 | 1.4% | Feb 7, 2023 | In GNU Less before 609, crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal. |
| CVE-2022-45768 | HIGH | 8.8 | 28.7% | Feb 7, 2023 | Command Injection vulnerability in Edimax Technology Co., Ltd. Wireless Router N300 Firmware BR428nS v3 allows attacker ... |
| CVE-2022-4883 | HIGH | 8.8 | 1.2% | Feb 7, 2023 | A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to comp... |
| CVE-2022-46285 | HIGH | 7.5 | 1.3% | Feb 7, 2023 | A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition w... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now