2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-42136HIGH7.8PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow the execution of ar...
CVE-2023-5253HIGH7.5A missing authentication check in the WebSocket channel used for the Check Point IoT integration in Nozomi Networks Guar...
CVE-2023-48383HIGH7.5NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthen...
CVE-2023-52289HIGH7.5An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, explo...
CVE-2023-52288HIGH7.5An issue was discovered in the flaskcode package through 0.0.8 for Python. An unauthenticated directory traversal, explo...
CVE-2023-51070HIGH7.5An access control issue in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allows unauthenticated attackers ...
CVE-2023-51066HIGH8.8An authenticated remote code execution vulnerability in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allo...
CVE-2023-51065HIGH7.5Incorrect access control in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allows unauthenticated attackers...
CVE-2023-51063HIGH8.8QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 was discovered to contain a DOM Based Reflected Cross Site S...
CVE-2023-51804HIGH7.5An issue in rymcu forest v.0.02 allows a remote attacker to obtain sensitive information via manipulation of the HTTP bo...
CVE-2023-46942HIGH7.5Lack of authentication in NPM's package @evershop/evershop before version 1.0.0-rc.8, allows remote attackers to obtain ...
CVE-2023-33472HIGH8.8An issue was discovered in Scada-LTS v2.7.5.2 build 4551883606 and before, allows remote attackers with low-level authen...
CVE-2023-48166HIGH7.5A directory traversal vulnerability in the SOAP Server integrated in Atos Unify OpenScape Voice V10 before V10R3.26.1 al...
CVE-2023-49647HIGH7.8Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows befor...
CVE-2023-51698HIGH8.8Atril is a simple multi-page document viewer. Atril is vulnerable to a critical Command Injection Vulnerability. This vu...
CVE-2023-49801HIGH7.5Lif Auth Server is a server for validating logins, managing information, and account recovery for Lif Accounts. The issu...
CVE-2023-48297HIGH7.5Discourse is a platform for community discussion. The message serializer uses the full list of expanded chat mentions (@...
CVE-2023-42463HIGH7.8Wazuh is a free and open source platform used for threat prevention, detection, and response. This bug introduced a stac...
CVE-2023-31035HIGH7.8NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be us...
CVE-2023-31034HIGH7.8NVIDIA DGX A100 SBIOS contains a vulnerability where a local attacker can cause input validation checks to be bypassed b...
CVE-2023-31033HIGH8NVIDIA DGX A100 BMC contains a vulnerability where a user may cause a missing authentication issue for a critical functi...
CVE-2023-31031HIGH7.8NVIDIA DGX Station A100 and DGX Station A800 SBIOS contains a vulnerability where a user may cause a heap-based buffer o...
CVE-2023-31025HIGH7.5NVIDIA DGX A100 BMC contains a vulnerability where an attacker may cause an LDAP user injection. A successful exploit of...
CVE-2023-46805HIGH8.2An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a re...
CVE-2023-31036HIGH8.8NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where, when it is launched with the non-de...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now