2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42136 | HIGH | 7.8 | 0.5% | Jan 15, 2024 | PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow the execution of ar... |
| CVE-2023-5253 | HIGH | 7.5 | 0.5% | Jan 15, 2024 | A missing authentication check in the WebSocket channel used for the Check Point IoT integration in Nozomi Networks Guar... |
| CVE-2023-48383 | HIGH | 7.5 | 1.0% | Jan 15, 2024 | NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthen... |
| CVE-2023-52289 | HIGH | 7.5 | 0.7% | Jan 13, 2024 | An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, explo... |
| CVE-2023-52288 | HIGH | 7.5 | 0.8% | Jan 13, 2024 | An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, explo... |
| CVE-2023-51070 | HIGH | 7.5 | 0.6% | Jan 13, 2024 | An access control issue in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allows unauthenticated attackers ... |
| CVE-2023-51066 | HIGH | 8.8 | 1.5% | Jan 13, 2024 | An authenticated remote code execution vulnerability in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allo... |
| CVE-2023-51065 | HIGH | 7.5 | 0.7% | Jan 13, 2024 | Incorrect access control in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allows unauthenticated attackers... |
| CVE-2023-51063 | HIGH | 8.8 | 0.3% | Jan 13, 2024 | QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 was discovered to contain a DOM Based Reflected Cross Site S... |
| CVE-2023-51804 | HIGH | 7.5 | 0.7% | Jan 13, 2024 | An issue in rymcu forest v.0.02 allows a remote attacker to obtain sensitive information via manipulation of the HTTP bo... |
| CVE-2023-46942 | HIGH | 7.5 | 0.7% | Jan 13, 2024 | Lack of authentication in NPM's package @evershop/evershop before version 1.0.0-rc.8, allows remote attackers to obtain ... |
| CVE-2023-33472 | HIGH | 8.8 | 1.3% | Jan 13, 2024 | An issue was discovered in Scada-LTS v2.7.5.2 build 4551883606 and before, allows remote attackers with low-level authen... |
| CVE-2023-48166 | HIGH | 7.5 | 1.0% | Jan 12, 2024 | A directory traversal vulnerability in the SOAP Server integrated in Atos Unify OpenScape Voice V10 before V10R3.26.1 al... |
| CVE-2023-49647 | HIGH | 7.8 | 0.2% | Jan 12, 2024 | Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows befor... |
| CVE-2023-51698 | HIGH | 8.8 | 2.3% | Jan 12, 2024 | Atril is a simple multi-page document viewer. Atril is vulnerable to a critical Command Injection Vulnerability. This vu... |
| CVE-2023-49801 | HIGH | 7.5 | 0.4% | Jan 12, 2024 | Lif Auth Server is a server for validating logins, managing information, and account recovery for Lif Accounts. The issu... |
| CVE-2023-48297 | HIGH | 7.5 | 0.5% | Jan 12, 2024 | Discourse is a platform for community discussion. The message serializer uses the full list of expanded chat mentions (@... |
| CVE-2023-42463 | HIGH | 7.8 | 0.2% | Jan 12, 2024 | Wazuh is a free and open source platform used for threat prevention, detection, and response. This bug introduced a stac... |
| CVE-2023-31035 | HIGH | 7.8 | 0.2% | Jan 12, 2024 | NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be us... |
| CVE-2023-31034 | HIGH | 7.8 | 0.2% | Jan 12, 2024 | NVIDIA DGX A100 SBIOS contains a vulnerability where a local attacker can cause input validation checks to be bypassed b... |
| CVE-2023-31033 | HIGH | 8 | 0.3% | Jan 12, 2024 | NVIDIA DGX A100 BMC contains a vulnerability where a user may cause a missing authentication issue for a critical functi... |
| CVE-2023-31031 | HIGH | 7.8 | 0.2% | Jan 12, 2024 | NVIDIA DGX Station A100 and DGX Station A800 SBIOS contains a vulnerability where a user may cause a heap-based buffer o... |
| CVE-2023-31025 | HIGH | 7.5 | 0.5% | Jan 12, 2024 | NVIDIA DGX A100 BMC contains a vulnerability where an attacker may cause an LDAP user injection. A successful exploit of... |
| CVE-2023-46805 | HIGH | 8.2 | 100.0% | Jan 12, 2024 | An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a re... |
| CVE-2023-31036 | HIGH | 8.8 | 0.9% | Jan 12, 2024 | NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where, when it is launched with the non-de... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now