2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-0991HIGH7.1Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.1.9.
CVE-2022-27226HIGH8.8A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in...
CVE-2022-26267HIGH7.5Piwigo v12.2.0 was discovered to contain an information leak via the action parameter in /admin/maintenance_actions.php.
CVE-2022-26266HIGH8.8Piwigo v12.2.0 was discovered to contain a SQL injection vulnerability via pwg.users.php.
CVE-2022-26265CRITICAL9.8Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component...
CVE-2022-25581HIGH7.8Classcms v2.5 and below contains an arbitrary file upload via the component \class\classupload. This vulnerability allow...
CVE-2022-25578CRITICAL9.8taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file.
CVE-2022-25390CRITICAL9.8DCN Firewall DCME-520 was discovered to contain a remote command execution (RCE) vulnerability via the host parameter in...
CVE-2022-25389HIGH7.5DCN Firewall DCME-520 was discovered to contain an arbitrary file download vulnerability via the path parameter in the f...
CVE-2022-27250CRITICAL9.8The UNISOC chipset through 2022-03-15 allows attackers to obtain remote control of a mobile phone, e.g., to obtain sensi...
CVE-2022-25461CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCf...
CVE-2022-25460CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg ...
CVE-2022-25459CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg functi...
CVE-2022-25458CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand fun...
CVE-2022-25457CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg...
CVE-2022-25456CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSe...
CVE-2022-25455CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind funct...
CVE-2022-25454CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg...
CVE-2022-25453CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlI...
CVE-2022-25452CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlI...
CVE-2022-25451CRITICAL9.8Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the setstaticroutecfg ...
CVE-2022-25450CRITICAL9.8Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetVirtualServerCf...
CVE-2022-25449CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the deviceId parameter in the saveParentCont...
CVE-2022-25448CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the openSchedWifi funct...
CVE-2022-25447CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the schedendtime parameter in the openSchedW...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now