2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32137 | HIGH | 8.8 | 1.3% | Jun 24, 2022 | In multiple CODESYS products, a low privileged remote attacker may craft a request, which may cause a heap-based buffer ... |
| CVE-2022-32136 | MEDIUM | 6.5 | 1.0% | Jun 24, 2022 | In multiple CODESYS products, a low privileged remote attacker may craft a request that cause a read access to an uninit... |
| CVE-2022-31806 | CRITICAL | 9.8 | 1.1% | Jun 24, 2022 | In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by defau... |
| CVE-2022-31805 | HIGH | 7.5 | 1.0% | Jun 24, 2022 | In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication ... |
| CVE-2022-31804 | HIGH | 7.5 | 1.0% | Jun 24, 2022 | The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated ... |
| CVE-2022-31803 | MEDIUM | 5.3 | 1.0% | Jun 24, 2022 | In CODESYS Gateway Server V2 an insufficient check for the activity of TCP client connections allows an unauthenticated ... |
| CVE-2022-31802 | CRITICAL | 9.8 | 1.2% | Jun 24, 2022 | In CODESYS Gateway Server V2 for versions prior to V2.3.9.38 only a part of the the specified password is been compared ... |
| CVE-2022-1965 | HIGH | 8.1 | 1.0% | Jun 24, 2022 | Multiple products of CODESYS implement a improper error handling. A low privilege remote attacker may craft a request, w... |
| CVE-2022-32405 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32404 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32403 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32402 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32401 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32400 | HIGH | 7.2 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32399 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32398 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32397 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32396 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32395 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32394 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32393 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32392 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-32391 | HIGH | 8.8 | 1.2% | Jun 24, 2022 | Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm... |
| CVE-2022-2147 | HIGH | 7.8 | 0.3% | Jun 23, 2022 | Cloudflare Warp for Windows from version 2022.2.95.0 contained an unquoted service path which enables arbitrary code exe... |
| CVE-2022-32987 | MEDIUM | 4.8 | 0.5% | Jun 23, 2022 | Multiple cross-site scripting (XSS) vulnerabilities in /bsms/?page=manage_account of Simple Bakery Shop Management Syste... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now