2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-26020MEDIUM6.5An information disclosure vulnerability exists in the router configuration export functionality of InHand Networks InRou...
CVE-2022-26007HIGH7.2An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4....
CVE-2022-26002HIGH7.2A stack-based buffer overflow vulnerability exists in the console factory functionality of InHand Networks InRouter302 V...
CVE-2022-25995HIGH8.8A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4. A sp...
CVE-2022-25172MEDIUM6.1An information disclosure vulnerability exists in the web interface session cookie functionality of InHand Networks InRo...
CVE-2022-24910MEDIUM6.7A buffer overflow vulnerability exists in the httpd parse_ping_result API functionality of InHand Networks InRouter302 V...
CVE-2022-24382MEDIUM6.7Improper input validation in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalatio...
CVE-2022-24297MEDIUM6.7Improper buffer restrictions in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escala...
CVE-2022-22139HIGH7.3Uncontrolled search path in the Intel(R) XTU software before version 7.3.0.33 may allow an authenticated user to potenti...
CVE-2022-21809HIGH8.1A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4. A special...
CVE-2022-21238MEDIUM6.1A cross-site scripting (xss) vulnerability exists in the info.jsp functionality of InHand Networks InRouter302 V3.5.4. A...
CVE-2022-21237MEDIUM6.7Improper buffer access in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation o...
CVE-2022-21182HIGH8.8A privilege escalation vulnerability exists in the router configuration import functionality of InHand Networks InRouter...
CVE-2022-21151MEDIUM5.5Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authe...
CVE-2022-21147MEDIUM5.5An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7. A specially-craft...
CVE-2022-21136MEDIUM5.5Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial ...
CVE-2022-21131MEDIUM5.5Improper access control for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable infor...
CVE-2022-21128HIGH7.8Insufficient control flow management in the Intel(R) Advisor software before version 7.6.0.37 may allow an authenticated...
CVE-2022-0005LOW2.4Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow a...
CVE-2022-0004MEDIUM6.8Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Bo...
CVE-2022-30002HIGH7.2Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=.
CVE-2022-30001CRITICAL9.8Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editAgent.php?agent_id=.
CVE-2022-30000CRITICAL9.8Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editPayment.php?recipt_no=.
CVE-2022-29999CRITICAL9.8Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editClient.php?client_id=.
CVE-2022-29998CRITICAL9.8Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/clientStatus.php?client_id=.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now