2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26020 | MEDIUM | 6.5 | 0.6% | May 12, 2022 | An information disclosure vulnerability exists in the router configuration export functionality of InHand Networks InRou... |
| CVE-2022-26007 | HIGH | 7.2 | 5.3% | May 12, 2022 | An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4.... |
| CVE-2022-26002 | HIGH | 7.2 | 3.0% | May 12, 2022 | A stack-based buffer overflow vulnerability exists in the console factory functionality of InHand Networks InRouter302 V... |
| CVE-2022-25995 | HIGH | 8.8 | 2.5% | May 12, 2022 | A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4. A sp... |
| CVE-2022-25172 | MEDIUM | 6.1 | 0.9% | May 12, 2022 | An information disclosure vulnerability exists in the web interface session cookie functionality of InHand Networks InRo... |
| CVE-2022-24910 | MEDIUM | 6.7 | 1.3% | May 12, 2022 | A buffer overflow vulnerability exists in the httpd parse_ping_result API functionality of InHand Networks InRouter302 V... |
| CVE-2022-24382 | MEDIUM | 6.7 | 0.2% | May 12, 2022 | Improper input validation in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalatio... |
| CVE-2022-24297 | MEDIUM | 6.7 | 0.2% | May 12, 2022 | Improper buffer restrictions in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escala... |
| CVE-2022-22139 | HIGH | 7.3 | 0.2% | May 12, 2022 | Uncontrolled search path in the Intel(R) XTU software before version 7.3.0.33 may allow an authenticated user to potenti... |
| CVE-2022-21809 | HIGH | 8.1 | 1.7% | May 12, 2022 | A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4. A special... |
| CVE-2022-21238 | MEDIUM | 6.1 | 1.4% | May 12, 2022 | A cross-site scripting (xss) vulnerability exists in the info.jsp functionality of InHand Networks InRouter302 V3.5.4. A... |
| CVE-2022-21237 | MEDIUM | 6.7 | 0.2% | May 12, 2022 | Improper buffer access in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation o... |
| CVE-2022-21182 | HIGH | 8.8 | 1.8% | May 12, 2022 | A privilege escalation vulnerability exists in the router configuration import functionality of InHand Networks InRouter... |
| CVE-2022-21151 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authe... |
| CVE-2022-21147 | MEDIUM | 5.5 | 0.6% | May 12, 2022 | An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7. A specially-craft... |
| CVE-2022-21136 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial ... |
| CVE-2022-21131 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | Improper access control for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable infor... |
| CVE-2022-21128 | HIGH | 7.8 | 0.2% | May 12, 2022 | Insufficient control flow management in the Intel(R) Advisor software before version 7.6.0.37 may allow an authenticated... |
| CVE-2022-0005 | LOW | 2.4 | 0.2% | May 12, 2022 | Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow a... |
| CVE-2022-0004 | MEDIUM | 6.8 | 0.3% | May 12, 2022 | Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Bo... |
| CVE-2022-30002 | HIGH | 7.2 | 0.9% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=. |
| CVE-2022-30001 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editAgent.php?agent_id=. |
| CVE-2022-30000 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editPayment.php?recipt_no=. |
| CVE-2022-29999 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editClient.php?client_id=. |
| CVE-2022-29998 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/clientStatus.php?client_id=. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now