2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-24542 | MEDIUM | 6.7 | 0.2% | Feb 14, 2024 | Unquoted search path or element in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an ... |
| CVE-2023-24481 | MEDIUM | 6.3 | 0.2% | Feb 14, 2024 | Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenti... |
| CVE-2023-24463 | MEDIUM | 4.3 | 0.3% | Feb 14, 2024 | Improper input validation in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an unauth... |
| CVE-2023-22848 | MEDIUM | 5.5 | 0.2% | Feb 14, 2024 | Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenti... |
| CVE-2023-22390 | MEDIUM | 6.5 | 0.2% | Feb 14, 2024 | Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an aut... |
| CVE-2023-48986 | MEDIUM | 6.1 | 0.6% | Feb 14, 2024 | Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allo... |
| CVE-2023-48985 | MEDIUM | 6.1 | 0.6% | Feb 14, 2024 | Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allo... |
| CVE-2023-44294 | MEDIUM | 6.5 | 0.4% | Feb 14, 2024 | In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), ... |
| CVE-2023-44293 | MEDIUM | 6.5 | 0.4% | Feb 14, 2024 | In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), ... |
| CVE-2023-39249 | MEDIUM | 5.3 | 0.2% | Feb 14, 2024 | Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows loca... |
| CVE-2023-25535 | MEDIUM | 6.5 | 0.2% | Feb 14, 2024 | Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has ... |
| CVE-2023-6152 | MEDIUM | 5.4 | 1.4% | Feb 13, 2024 | A user changing their email after signing up and verifying it can change it without verification in profile settings. T... |
| CVE-2023-31347 | MEDIUM | 4.9 | 0.5% | Feb 13, 2024 | Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an ... |
| CVE-2023-31346 | MEDIUM | 6 | 0.3% | Feb 13, 2024 | Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests. ... |
| CVE-2023-20579 | MEDIUM | 6 | 0.2% | Feb 13, 2024 | Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to... |
| CVE-2023-50808 | MEDIUM | 6.1 | 0.4% | Feb 13, 2024 | Zimbra Collaboration before Kepler 9.0.0 Patch 38 GA allows DOM-based JavaScript injection in the Modern UI. |
| CVE-2023-48432 | MEDIUM | 6.1 | 0.5% | Feb 13, 2024 | An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. XSS, with resultant session stealing, can o... |
| CVE-2023-45207 | MEDIUM | 6.1 | 0.5% | Feb 13, 2024 | An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. An attacker can send a PDF document through... |
| CVE-2023-45206 | MEDIUM | 6.1 | 0.4% | Feb 13, 2024 | An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. Through the help document endpoint in webma... |
| CVE-2023-26562 | MEDIUM | 6.5 | 0.6% | Feb 13, 2024 | In Zimbra Collaboration (ZCS) 8.8.15 and 9.0, a closed account (with 2FA and generated passwords) can send e-mail messag... |
| CVE-2023-5680 | MEDIUM | 5.3 | 0.6% | Feb 13, 2024 | If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache d... |
| CVE-2023-6072 | MEDIUM | 5.4 | 0.3% | Feb 13, 2024 | A cross-site scripting vulnerability in Trellix Central Management (CM) prior to 9.1.3.97129 allows a remote authentica... |
| CVE-2023-48364 | MEDIUM | 6.5 | 0.3% | Feb 13, 2024 | A vulnerability has been identified in OpenPCS 7 V9.1 (All versions < V9.1 SP2 UC05), SIMATIC BATCH V9.1 (All versions <... |
| CVE-2023-48363 | MEDIUM | 6.5 | 0.3% | Feb 13, 2024 | A vulnerability has been identified in OpenPCS 7 V9.1 (All versions < V9.1 SP2 UC05), SIMATIC BATCH V9.1 (All versions <... |
| CVE-2023-6815 | MEDIUM | 6.5 | 0.7% | Feb 13, 2024 | Incorrect Privilege Assignment vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series Safety CPU R08/16/32/... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now