6.1
    Medium

    CVE-2022-39195

    Last Modified: 30 Mar 2023

    A cross-site scripting (XSS) vulnerability in the LISTSERV 17 web interface allows remote attackers to inject arbitrary JavaScript or HTML via the c parameter.

    Source:Shaunt Der-Grigorian
    Published:17 Jan 2023
    9.8
    Critical

    CVE-2022-39073

    Last Modified: 10 Apr 2025

    There is a command injection vulnerability in ZTE MF286R, Due to insufficient validation of the input parameters, an attacker could use the vulnerability to execute arbitrary commands.

    Published:6 Jan 2023
    8.8
    High

    CVE-2022-39066

    Last Modified: 29 Apr 2025

    There is a SQL injection vulnerability in ZTE MF286R. Due to insufficient validation of the input parameters of the phonebook interface, an authenticated attacker could use the vulnerability to execute arbitrary SQL injection.

    Published:22 Nov 2022
    8.8
    High

    CVE-2022-38841

    Last Modified: 22 Mar 2023

    Linksys AX3200 1.1.00 is vulnerable to OS command injection by authenticated users via shell metacharacters to the diagnostics traceroute page.

    Source:Ahmed Alroky
    Published:16 Apr 2023
    7.5
    High

    CVE-2022-38840

    Last Modified: 23 Mar 2023

    cgi-bin/xmlstatus.cgi in Güralp MAN-EAM-0003 3.2.4 is vulnerable to an XML External Entity (XXE) issue via XML file upload, which leads to local file disclosure.

    Source:Ahmed Alroky
    Published:16 Apr 2023
    8.1
    High

    CVE-2022-38813

    Last Modified: 25 Apr 2025

    PHPGurukul Blood Donor Management System 1.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of users, delete the users, add and manage Blood Group, and Submit Report.

    Published:25 Nov 2022
    9.1
    Critical

    CVE-2022-38789

    Last Modified: 21 Nov 2024

    An issue was discovered in Airties Smart Wi-Fi before 2020-08-04. It allows attackers to change the main/guest SSID and the PSK to arbitrary values, and map the LAN, because of Insecure Direct Object Reference.

    Published:15 Sept 2022
    8.1
    High

    CVE-2022-38766

    Last Modified: 10 Apr 2025

    The remote keyless system on Renault ZOE 2021 vehicles sends 433.92 MHz RF signals from the same Rolling Codes set for each door-open request, which allows for a replay attack.

    Published:3 Jan 2023
    7.5
    High

    CVE-2022-38725

    Last Modified: 3 Apr 2025

    An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected.

    Published:23 Jan 2023
    7.8
    High

    CVE-2022-38694

    Last Modified: 15 Apr 2026

    In BootRom, there is a possible unchecked write address. This could lead to local escalation of privilege with no additional execution privileges needed.

    Published:1 Sept 2025
    7.8
    High

    CVE-2022-38691

    Last Modified: 15 Apr 2026

    In BootROM, there is a possible missing validation for Certificate Type 0. This could lead to local escalation of privilege with no additional execution privileges needed.

    Published:1 Sept 2025
    7.3
    High

    CVE-2022-38604

    Last Modified: 11 Feb 2025

    Wacom Driver 6.3.46-1 for Windows and lower was discovered to contain an arbitrary file deletion vulnerability.

    Published:11 Apr 2023
    Unknown

    CVE-2022-38601

    https://github.com/jet-pentest/CVE-2022-38601

    6.5
    Medium

    CVE-2022-38599

    Last Modified: 23 Apr 2025

    Teleport v3.2.2, Teleport v3.5.6-rc6, and Teleport v3.6.3-b2 was discovered to contain an information leak via the /user/get-role-list web interface.

    Published:8 Dec 2022
    9.8
    Critical

    CVE-2022-38580

    Last Modified: 28 Mar 2023

    Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).

    Source:Hosein Vita
    Published:24 Oct 2022
    8.8
    High

    CVE-2022-38577

    Last Modified: 3 Jun 2025

    ProcessMaker before v3.5.4 was discovered to contain insecure permissions in the user profile page. This vulnerability allows attackers to escalate normal users to Administrators.

    Published:19 Sept 2022
    6.1
    Medium

    CVE-2022-38553

    Last Modified: 21 May 2025

    Academy Learning Management System before v5.9.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Search parameter.

    Published:26 Sept 2022
    7.8
    High

    CVE-2022-38532

    Last Modified: 21 Nov 2024

    Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Features of MSI.CentralServer.exe. This vulnerability allows attackers to escalate privileges via running a crafted executable.

    Published:19 Sept 2022
    8.8
    High

    CVE-2022-38374

    Last Modified: 21 Nov 2024

    A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiADC 7.0.0 - 7.0.2 and 6.2.0 - 6.2.4 allows an attacker to execute unauthorized code or commands via the URL and User fields observed in the traffic and event logviews.

    Published:2 Nov 2022
    8.8
    High

    CVE-2022-38181

    Last Modified: 3 Nov 2025

    The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled. This affects Bifrost r0p0 through r38p1, and r39p0; Valhall r19p0 through r38p1, and r39p0; and Midgard r4p0 through r32p0.

    Published:25 Oct 2022
    7
    High

    CVE-2022-38029

    Last Modified: 2 Jan 2025

    Windows ALPC Elevation of Privilege Vulnerability

    Published:11 Oct 2022
    7.8
    High

    CVE-2022-37969

    Last Modified: 13 Jan 2026

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

    Published:13 Sept 2022
    8.8
    High

    CVE-2022-37932

    Last Modified: 24 Apr 2025

    A potential security vulnerability has been identified in Hewlett Packard Enterprise OfficeConnect 1820, 1850, and 1920S Network switches. The vulnerability could be remotely exploited to allow authentication bypass. HPE has made the following software updates to resolve the vulnerability in Hewlett Packard Enterprise OfficeConnect 1820, 1850 and 1920S Network switches versions: Prior to PT.02.14; Prior to PC.01.22; Prior to PO.01.21; Prior to PD.02.22;

    Published:30 Nov 2022
    6.8
    Medium

    CVE-2022-37708

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published:8 Aug 2022
    7.8
    High

    CVE-2022-37706

    Last Modified: 1 Apr 2023

    enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library function mishandles pathnames that begin with a /dev/.. substring.

    Source:nu11secur1ty
    Published:25 Dec 2022
    6.7
    Medium

    CVE-2022-37705

    Last Modified: 4 Nov 2025

    A privilege escalation flaw was found in Amanda 3.5.1 in which the backup user can acquire root privileges. The vulnerable component is the runtar SUID program, which is a wrapper to run /usr/bin/tar with specific arguments that are controllable by the attacker. This program mishandles the arguments passed to tar binary (it expects that the argument name and value are separated with a space; however, separating them with an equals sign is also supported),

    Published:7 Feb 2023
    6.7
    Medium

    CVE-2022-37704

    Last Modified: 4 Nov 2025

    Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

    Published:7 Feb 2023
    3.3
    Low

    CVE-2022-37703

    Last Modified: 4 Nov 2025

    In Amanda 3.5.1, an information leak vulnerability was found in the calcsize SUID binary. An attacker can abuse this vulnerability to know if a directory exists or not anywhere in the fs. The binary will use `opendir()` as root directly without checking the path, letting the attacker provide an arbitrary path.

    Published:13 Sept 2022
    9.8
    Critical

    CVE-2022-37661

    Last Modified: 21 Nov 2022

    SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature.

    Source:Yerodin Richards
    Published:14 Sept 2022
    9.8
    Critical

    CVE-2022-37434

    Last Modified: 14 Jul 2026

    zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference).

    Published:5 Aug 2022
    7.5
    High

    CVE-2022-37422

    Last Modified: 21 Nov 2024

    Payara through 5.2022.2 allows directory traversal without authentication. This affects Payara Server, Payara Micro, and Payara Server Embedded.

    Published:18 Aug 2022
    6.4
    Medium

    CVE-2022-37418

    Last Modified: 6 Apr 2026

    The Remote Keyless Entry (RKE) receiving unit on certain Nissan, Kia, and Hyundai vehicles through 2017 allows remote attackers to perform unlock operations and force a resynchronization after capturing two consecutive valid key fob signals over the radio, aka a RollBack attack. The attacker retains the ability to unlock indefinitely.

    Published:24 Aug 2022
    7.8
    High

    CVE-2022-37332

    Last Modified: 15 Apr 2025

    A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. A specially-crafted PDF document can trigger the reuse of previously freed memory via misusing media player API, which can lead to arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially-crafted, malicious site if the browser plugin extension is enabled.

    Published:21 Nov 2022
    9.8
    Critical

    CVE-2022-37298

    Last Modified: 8 May 2025

    Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler class found in shinken/safepickle.py implements a weak authentication scheme when unserializing objects passed from monitoring nodes to the Shinken monitoring server.

    Published:20 Oct 2022
    7.5
    High

    CVE-2022-37255

    Last Modified: 28 Mar 2023

    TP-Link Tapo C310 1.3.0 devices allow access to the RTSP video feed via credentials of User --- and Password TPL075526460603.

    Source:dsclee1
    Published:16 Apr 2023
    Unknown

    CVE-2022-37210

    https://github.com/AgainstTheLight/CVE-2022-37210

    8.8
    High

    CVE-2022-37209

    Last Modified: 22 May 2025

    JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

    Published:27 Sept 2022
    8.8
    High

    CVE-2022-37208

    Last Modified: 15 May 2025

    JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

    Published:13 Oct 2022
    8.8
    High

    CVE-2022-37207

    Last Modified: 21 Nov 2024

    JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection

    Published:15 Sept 2022
    Unknown

    CVE-2022-37206

    https://github.com/AgainstTheLight/CVE-2022-37206

    8.8
    High

    CVE-2022-37205

    Last Modified: 28 May 2025

    JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

    Published:20 Sept 2022
    9.8
    Critical

    CVE-2022-37204

    Last Modified: 27 May 2025

    Final CMS 5.1.0 is vulnerable to SQL Injection.

    Published:20 Sept 2022
    9.8
    Critical

    CVE-2022-37203

    Last Modified: 21 Nov 2024

    JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

    Published:19 Sept 2022
    8.8
    High

    CVE-2022-37202

    Last Modified: 7 May 2025

    JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/advicefeedback/list

    Published:26 Oct 2022
    8.8
    High

    CVE-2022-37201

    Last Modified: 21 Nov 2024

    JFinal CMS 5.1.0 is vulnerable to SQL Injection.

    Published:15 Sept 2022
    7.8
    High

    CVE-2022-37197

    Last Modified: 11 Nov 2022

    IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.

    Source:BLAY ABU SAFIAN
    Published:18 Nov 2022
    7.5
    High

    CVE-2022-37177

    Last Modified: 21 Nov 2024

    HireVue Hiring Platform V1.0 suffers from Use of a Broken or Risky Cryptographic Algorithm. NOTE: this is disputed by the vendor for multiple reasons, e.g., it is inconsistent with CVE ID assignment rules for cloud services, and no product with version V1.0 exists. Furthermore, the rail-fence cipher has been removed, and TLS 1.2 is now used for encryption.

    Published:29 Aug 2022
    7.5
    High

    CVE-2022-37122

    Last Modified: 21 Nov 2024

    Carel pCOWeb HVAC BACnet Gateway 2.1.0, Firmware: A2.1.0 - B2.1.0, Application Software: 2.15.4A Software v16 13020200 suffers from an unauthenticated arbitrary file disclosure vulnerability. Input passed through the 'file' GET parameter through the 'logdownload.cgi' Bash script is not properly verified before being used to download log files. This can be exploited to disclose the contents of arbitrary and sensitive files via directory traversal attacks.

    Published:31 Aug 2022
    9.8
    Critical

    CVE-2022-37109

    Last Modified: 25 Mar 2023

    patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulnerable to Incorrect Access Control. Access to the password.txt file is not properly restricted as it is in the root directory served by StaticFileHandler and the Tornado rule to throw a 403 error when password.txt is accessed can be bypassed. Furthermore, it is not necessary to crack the password hash to authenticate with the application because the password hash is also used as the cookie secret, so an attacker can generate his own authentication cookie.

    Source:Elias Hohl
    Published:14 Nov 2022
    9.8
    Critical

    CVE-2022-37061

    Last Modified: 16 Apr 2025

    All FLIR AX8 thermal sensor cameras version up to and including 1.46.16 are vulnerable to Remote Command Injection. This can be exploited to inject and execute arbitrary shell commands as the root user through the id HTTP POST parameter in the res.php endpoint. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the root privileges. NOTE: The vendor has stated that with the introduction of firmware version 1.49.16 (Jan 2023) the FLIR AX8 should no longer be affected by the vulnerability reported. Latest firmware version (as of Oct 2025, was released Jun 2024) is 1.55.16.

    Source:ub3rsick
    Published:18 Aug 2022