2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-20849MEDIUM6.1A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could a...
CVE-2022-20846MEDIUM4.3A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauth...
CVE-2022-20845MEDIUM6A vulnerability in the TL1 function of Cisco Network Convergence System (NCS) 4000 Series could allow an authentica...
CVE-2022-20814HIGH7.4A vulnerability in the certificate validation of Cisco Expressway-C and Cisco TelePresence VCS could allow an ...
CVE-2022-20793MEDIUM6.8A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 De...
CVE-2022-20766MEDIUM5.3A vulnerability in the Cisco Discovery Protocol functionality of Cisco ATA 190 Series Adaptive Telephone Adapt...
CVE-2022-20685HIGH7.5A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker...
CVE-2022-20663MEDIUM6.1A vulnerability in the web-based management interface of Cisco Secure Network Analytics, formerly Stealthwatch Ente...
CVE-2022-20657MEDIUM6.1A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an unauthenticate...
CVE-2022-20656MEDIUM6.5A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an authenticated,...
CVE-2022-20655HIGH8.8A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local a...
CVE-2022-20654MEDIUM6.1A vulnerability in the web-based interface of Cisco Webex Meetings could allow an unauthenticated, remote attacker ...
CVE-2022-20652MEDIUM6.5A vulnerability in the web-based management interface and in the API subsystem of Cisco Tetration could allow an au...
CVE-2022-20649HIGH8.1A vulnerability in Cisco RCM for Cisco StarOS Software could allow an unauthenticated, remote attacker to perf...
CVE-2022-20648MEDIUM5.3A vulnerability in a debug function for Cisco RCM for Cisco StarOS Software could allow an unauthenticated, re...
CVE-2022-20634MEDIUM6.1A vulnerability in the web-based management interface of Cisco ECE could allow an unauthenticated, remote attacker ...
CVE-2022-20631MEDIUM6.1A vulnerability in the web-based management interface of Cisco ECE could allow an unauthenticated, remote attacker ...
CVE-2022-20626MEDIUM5.4A vulnerability in the web-based management interface of Cisco Prime Access Registrar Appliance could allow an auth...
CVE-2022-1884CRITICAL9.8A remote command execution vulnerability exists in gogs/gogs versions <=0.12.7 when deployed on a Windows server. The vu...
CVE-2022-1226MEDIUM4.8A Cross-Site Scripting (XSS) vulnerability in phpipam/phpipam versions prior to 1.4.7 allows attackers to execute arbitr...
CVE-2022-2232HIGH7.5A flaw was found in the Keycloak package. This flaw allows an attacker to utilize an LDAP injection to bypass the userna...
CVE-2022-31671HIGH7.4Harbor fails to validate user permissions when reading and updating job execution logs through the P2P preheat execution...
CVE-2022-31670HIGH7.7Harbor fails to validate the user permissions when updating tag retention policies.  By sending a request to update a t...
CVE-2022-31669HIGH7.7Harbor fails to validate the user permissions when updating tag immutability policies.  By sending a request to update ...
CVE-2022-31668HIGH7.7Harbor fails to validate the user permissions when updating p2p preheat policies. By sending a request to update a p2p p...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now