2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28012 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\posi... |
| CVE-2022-28011 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\sche... |
| CVE-2022-28010 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\over... |
| CVE-2022-28009 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\atte... |
| CVE-2022-28008 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\atte... |
| CVE-2022-28007 | HIGH | 8.8 | 1.1% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cash... |
| CVE-2022-28006 | HIGH | 8.8 | 1.4% | Apr 21, 2022 | Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\empl... |
| CVE-2022-27478 | HIGH | 8.8 | 19.5% | Apr 21, 2022 | Victor v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component admin/profile.php?se... |
| CVE-2022-29566 | HIGH | 8.1 | 0.7% | Apr 21, 2022 | The Bulletproofs 2017/1066 paper mishandles Fiat-Shamir generation because the hash computation fails to include all of ... |
| CVE-2022-28820 | MEDIUM | 6.1 | 1.0% | Apr 21, 2022 | ACS Commons version 5.1.x (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in /apps/acs-c... |
| CVE-2022-28743 | MEDIUM | 6.6 | 1.1% | Apr 21, 2022 | Time-of-check Time-of-use (TOCTOU) Race Condition vulerability in Foscam R2C IP camera running System FW <= 1.13.1.6, an... |
| CVE-2022-23711 | MEDIUM | 5.3 | 0.9% | Apr 21, 2022 | A vulnerability in Kibana could expose sensitive information related to Elastic Stack monitoring in the Kibana page sour... |
| CVE-2022-22969 | MEDIUM | 6.5 | 1.2% | Apr 21, 2022 | <Issue Description> Spring Security OAuth versions 2.5.x prior to 2.5.2 and older unsupported versions are susceptible t... |
| CVE-2022-20805 | MEDIUM | 4.1 | 0.2% | Apr 21, 2022 | A vulnerability in the automatic decryption process in Cisco Umbrella Secure Web Gateway (SWG) could allow an authentica... |
| CVE-2022-20804 | MEDIUM | 6.5 | 0.3% | Apr 21, 2022 | A vulnerability in the Cisco Discovery Protocol of Cisco Unified Communications Manager (Unified CM) and Cisco Unified C... |
| CVE-2022-20795 | HIGH | 7.5 | 0.7% | Apr 21, 2022 | A vulnerability in the implementation of the Datagram TLS (DTLS) protocol in Cisco Adaptive Security Appliance (ASA) Sof... |
| CVE-2022-20790 | MEDIUM | 6.5 | 2.0% | Apr 21, 2022 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Uni... |
| CVE-2022-20789 | MEDIUM | 6.5 | 1.3% | Apr 21, 2022 | A vulnerability in the software upgrade process of Cisco Unified Communications Manager (Unified CM) and Cisco Unified C... |
| CVE-2022-20788 | MEDIUM | 6.1 | 0.8% | Apr 21, 2022 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unifie... |
| CVE-2022-20787 | MEDIUM | 6.8 | 0.4% | Apr 21, 2022 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and ... |
| CVE-2022-20786 | HIGH | 8.1 | 0.8% | Apr 21, 2022 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager IM & Presence Service ... |
| CVE-2022-20783 | HIGH | 7.5 | 1.3% | Apr 21, 2022 | A vulnerability in the packet processing functionality of Cisco TelePresence Collaboration Endpoint (CE) Software and Ci... |
| CVE-2022-20778 | MEDIUM | 6.1 | 0.8% | Apr 21, 2022 | A vulnerability in the authentication component of Cisco Webex Meetings could allow an unauthenticated, remote attacker ... |
| CVE-2022-20773 | HIGH | 7.5 | 1.1% | Apr 21, 2022 | A vulnerability in the key-based SSH authentication mechanism of Cisco Umbrella Virtual Appliance (VA) could allow an un... |
| CVE-2022-20732 | HIGH | 7.8 | 0.2% | Apr 21, 2022 | A vulnerability in the configuration file protections of Cisco Virtualized Infrastructure Manager (VIM) could allow an a... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now