2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29746 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Money Transfer Management System 1.0 is vulnerable to SQL Injection via /mtms/classes/Users.php?f=delete. |
| CVE-2022-29745 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Money Transfer Management System 1.0 is vulnerable to SQL Injection via \mtms\classes\Master.php?f=delete_transaction. |
| CVE-2022-29741 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Money Transfer Management System 1.0 is vulnerable to SQL Injection via \mtms\classes\Master.php?f=delete_fee. |
| CVE-2022-29739 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Money Transfer Management System 1.0 is vulnerable to SQL Injection via /mtms/admin/?page=user/manage_user&id=. |
| CVE-2022-29738 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Money Transfer Management System 1.0 is vulnerable to SQL Injection via /mtms/admin/?page=transaction/send&id=, id. |
| CVE-2022-29307 | CRITICAL | 9.8 | 17.5% | May 12, 2022 | IonizeCMS v1.0.8.1 was discovered to contain a command injection vulnerability via the function copy_lang_content in app... |
| CVE-2022-29306 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | IonizeCMS v1.0.8.1 was discovered to contain a SQL injection vulnerability via the id_page parameter in application/mode... |
| CVE-2022-29303 | CRITICAL | 9.8 | 99.9% | May 12, 2022 | SolarView Compact ver.6.00 was discovered to contain a command injection vulnerability via conf_mail.php. |
| CVE-2022-29302 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | SolarView Compact ver.6.00 was discovered to contain a local file disclosure via /html/Solar_Ftp.php. |
| CVE-2022-29298 | HIGH | 7.5 | 44.5% | May 12, 2022 | SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal. |
| CVE-2022-28920 | MEDIUM | 4.8 | 0.6% | May 12, 2022 | Tieba-Cloud-Sign v4.9 was discovered to contain a cross-site scripting (XSS) vulnerability via the function strip_tags. |
| CVE-2022-28919 | MEDIUM | 6.1 | 1.4% | May 12, 2022 | HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the funct... |
| CVE-2022-22413 | CRITICAL | 9.8 | 1.2% | May 12, 2022 | IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 is vulnerable to SQL injection. A remote attacker could send s... |
| CVE-2022-1699 | HIGH | 7.5 | 1.0% | May 12, 2022 | Uncontrolled Resource Consumption in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerability can be abu... |
| CVE-2022-1698 | HIGH | 7.5 | 1.0% | May 12, 2022 | Allowing long password leads to denial of service in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerab... |
| CVE-2022-30279 | HIGH | 7.5 | 0.9% | May 12, 2022 | An issue was discovered in Stormshield Network Security (SNS) 4.3.x before 4.3.8. The event logging of the ASQ sofbus la... |
| CVE-2022-29995 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=clients/manage_client&id=. |
| CVE-2022-29994 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=facilities/manage_facility... |
| CVE-2022-29993 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/bookings/view_booking.php?id=. |
| CVE-2022-29992 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/categories/manage_category.php?i... |
| CVE-2022-29990 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/categories/view_category.php?id=... |
| CVE-2022-29989 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_booking. |
| CVE-2022-29988 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete. |
| CVE-2022-29987 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=user/manage_user&id=. |
| CVE-2022-29986 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_facility. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now