2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-50997HIGH7.5Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint th...
CVE-2022-4990HIGH7.3** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ...
CVE-2022-4989HIGH8.5** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ...
CVE-2022-50971HIGH8.5Malwarebytes 4.5 contains an unquoted service path vulnerability in the MBAMService executable that allows local attacke...
CVE-2022-26758HIGH7.1A malicious application may cause unexpected changes in memory shared between processes. A memory corruption issue was a...
CVE-2022-49042HIGH7.8An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backu...
CVE-2022-49036HIGH7.8An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Ba...
CVE-2022-4992HIGH8.8Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors versions VG4.1.1, VG4.0.3, and lower (wi...
CVE-2022-4991HIGH7.4Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory that may be controllable by...
CVE-2022-34363HIGH7.5Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the  Unisp...
CVE-2022-31231HIGH7.5Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A...
CVE-2022-4988HIGH7.3Alien::FreeImage versions through 1.001 for Perl contains several vulnerable libraries. Alien::FreeImage contains versi...
CVE-2022-50944HIGH8.8Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows authenticated attackers to execute arbitrary PHP ...
CVE-2022-26522HIGH7.8The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local ...
CVE-2022-50992HIGH8.7Weaver (Fanwei) E-cology 9.5 versions prior to 10.52 contain an arbitrary file read vulnerability in the XmlRpcServlet i...
CVE-2022-4987HIGH7.3Hirschmann Industrial HiVision version 08.1.03 prior to 08.1.04 and 08.2.00 contains a vulnerability in the execution of...
CVE-2022-4986HIGH8.7Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device t...
CVE-2022-50978HIGH7.5An unauthenticated remote attacker could potentially disrupt operations by switching between multiple configuration pres...
CVE-2022-50977HIGH7.5An unauthenticated remote attacker could potentially disrupt operations by switching between multiple configuration pres...
CVE-2022-50976HIGH7.7A local attacker could cause a full device reset by resetting the device passwords using an invalid reset file via USB.
CVE-2022-50975HIGH8.8An unauthenticated remote attacker is able to use an existing session id of a logged in user and gain full access to the...
CVE-2022-50950HIGH7.1Webile 1.0.1 contains a directory traversal vulnerability that allows remote attackers to manipulate file system paths w...
CVE-2022-40620HIGH7.7FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS ce...
CVE-2022-40619HIGH7.7FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the L...
CVE-2022-50939HIGH8.6e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated administrators to overrid...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now