2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-28012HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\posi...
CVE-2022-28011HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\sche...
CVE-2022-28010HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\over...
CVE-2022-28009HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\atte...
CVE-2022-28008HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\atte...
CVE-2022-28007HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cash...
CVE-2022-28006HIGH8.8Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\empl...
CVE-2022-27478HIGH8.8Victor v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component admin/profile.php?se...
CVE-2022-29566HIGH8.1The Bulletproofs 2017/1066 paper mishandles Fiat-Shamir generation because the hash computation fails to include all of ...
CVE-2022-28820MEDIUM6.1ACS Commons version 5.1.x (and earlier) suffers from a Reflected Cross-site Scripting (XSS) vulnerability in /apps/acs-c...
CVE-2022-28743MEDIUM6.6Time-of-check Time-of-use (TOCTOU) Race Condition vulerability in Foscam R2C IP camera running System FW <= 1.13.1.6, an...
CVE-2022-23711MEDIUM5.3A vulnerability in Kibana could expose sensitive information related to Elastic Stack monitoring in the Kibana page sour...
CVE-2022-22969MEDIUM6.5<Issue Description> Spring Security OAuth versions 2.5.x prior to 2.5.2 and older unsupported versions are susceptible t...
CVE-2022-20805MEDIUM4.1A vulnerability in the automatic decryption process in Cisco Umbrella Secure Web Gateway (SWG) could allow an authentica...
CVE-2022-20804MEDIUM6.5A vulnerability in the Cisco Discovery Protocol of Cisco Unified Communications Manager (Unified CM) and Cisco Unified C...
CVE-2022-20795HIGH7.5A vulnerability in the implementation of the Datagram TLS (DTLS) protocol in Cisco Adaptive Security Appliance (ASA) Sof...
CVE-2022-20790MEDIUM6.5A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Uni...
CVE-2022-20789MEDIUM6.5A vulnerability in the software upgrade process of Cisco Unified Communications Manager (Unified CM) and Cisco Unified C...
CVE-2022-20788MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unifie...
CVE-2022-20787MEDIUM6.8A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and ...
CVE-2022-20786HIGH8.1A vulnerability in the web-based management interface of Cisco Unified Communications Manager IM &amp; Presence Service ...
CVE-2022-20783HIGH7.5A vulnerability in the packet processing functionality of Cisco TelePresence Collaboration Endpoint (CE) Software and Ci...
CVE-2022-20778MEDIUM6.1A vulnerability in the authentication component of Cisco Webex Meetings could allow an unauthenticated, remote attacker ...
CVE-2022-20773HIGH7.5A vulnerability in the key-based SSH authentication mechanism of Cisco Umbrella Virtual Appliance (VA) could allow an un...
CVE-2022-20732HIGH7.8A vulnerability in the configuration file protections of Cisco Virtualized Infrastructure Manager (VIM) could allow an a...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now