2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-0991 | HIGH | 7.1 | 1.0% | Mar 19, 2022 | Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.1.9. |
| CVE-2022-27226 | HIGH | 8.8 | 34.5% | Mar 19, 2022 | A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in... |
| CVE-2022-26267 | HIGH | 7.5 | 1.4% | Mar 18, 2022 | Piwigo v12.2.0 was discovered to contain an information leak via the action parameter in /admin/maintenance_actions.php. |
| CVE-2022-26266 | HIGH | 8.8 | 1.3% | Mar 18, 2022 | Piwigo v12.2.0 was discovered to contain a SQL injection vulnerability via pwg.users.php. |
| CVE-2022-26265 | CRITICAL | 9.8 | 30.4% | Mar 18, 2022 | Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component... |
| CVE-2022-25581 | HIGH | 7.8 | 1.1% | Mar 18, 2022 | Classcms v2.5 and below contains an arbitrary file upload via the component \class\classupload. This vulnerability allow... |
| CVE-2022-25578 | CRITICAL | 9.8 | 1.8% | Mar 18, 2022 | taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file. |
| CVE-2022-25390 | CRITICAL | 9.8 | 3.1% | Mar 18, 2022 | DCN Firewall DCME-520 was discovered to contain a remote command execution (RCE) vulnerability via the host parameter in... |
| CVE-2022-25389 | HIGH | 7.5 | 0.9% | Mar 18, 2022 | DCN Firewall DCME-520 was discovered to contain an arbitrary file download vulnerability via the path parameter in the f... |
| CVE-2022-27250 | CRITICAL | 9.8 | 1.2% | Mar 18, 2022 | The UNISOC chipset through 2022-03-15 allows attackers to obtain remote control of a mobile phone, e.g., to obtain sensi... |
| CVE-2022-25461 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCf... |
| CVE-2022-25460 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg ... |
| CVE-2022-25459 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg functi... |
| CVE-2022-25458 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand fun... |
| CVE-2022-25457 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg... |
| CVE-2022-25456 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSe... |
| CVE-2022-25455 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind funct... |
| CVE-2022-25454 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg... |
| CVE-2022-25453 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlI... |
| CVE-2022-25452 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlI... |
| CVE-2022-25451 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the setstaticroutecfg ... |
| CVE-2022-25450 | CRITICAL | 9.8 | 11.6% | Mar 18, 2022 | Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetVirtualServerCf... |
| CVE-2022-25449 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the deviceId parameter in the saveParentCont... |
| CVE-2022-25448 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the openSchedWifi funct... |
| CVE-2022-25447 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the schedendtime parameter in the openSchedW... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now