2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-35525CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameter led_switch, which leads to co...
CVE-2022-35524CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: wlan_signal, web_pskValue, ...
CVE-2022-35523CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter del_mac and parameter fl...
CVE-2022-35522CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: ppp_username, ppp_passwd, r...
CVE-2022-35521CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameters: remoteManagementEnable...
CVE-2022-35520CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 api.cgi has no filtering on parameter ufconf, and this is a hidden ...
CVE-2022-35519CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter add_mac, which leads to ...
CVE-2022-35518CRITICAL9.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 nas.cgi has no filtering on parameters: User1Passwd and User1, whic...
CVE-2022-35491CRITICAL9.8TOTOLINK A3002RU V3.0.0-B20220304.1804 has a hardcoded password for root in /etc/shadow.sample.
CVE-2022-35426CRITICAL9.8UCMS 1.6 is vulnerable to arbitrary file upload via ucms/sadmin/file PHP file.
CVE-2022-35293CRITICAL9.1Due to insecure session management, SAP Enable Now allows an unauthenticated attacker to gain access to user's account. ...
CVE-2022-32429CRITICAL9.8An authentication-bypass issue in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh of Mega System Technolog...
CVE-2022-2634CRITICAL9.8An attacker may be able to execute malicious actions due to the lack of device access protections and device permissions...
CVE-2022-2457CRITICAL9.8A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against...
CVE-2022-20361CRITICAL9.8In btif_dm_auth_cmpl_evt of btif_dm.cc, there is a possible vulnerability in Cross-Transport Key Derivation due to Weakn...
CVE-2022-20239CRITICAL9.8remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm...
CVE-2022-35280CRITICAL9.8IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 does not require that users should have strong passwords by de...
CVE-2022-36323CRITICAL9.1Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with admini...
CVE-2022-34660CRITICAL9.8A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V1...
CVE-2022-2242CRITICAL9.8The KUKA SystemSoftware V/KSS in versions prior to 8.6.5 is prone to improper access control as an unauthorized attacker...
CVE-2022-20842CRITICAL9.8Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenti...
CVE-2022-20827CRITICAL10Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenti...
CVE-2022-20841CRITICAL9Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenti...
CVE-2022-34715CRITICAL9.8Windows Network File System Remote Code Execution Vulnerability
CVE-2022-33649CRITICAL9.6Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now