2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3290 | MEDIUM | 5 | 0.3% | Jul 9, 2024 | A BOLA vulnerability in POST /customers allows a low privileged user to create a low privileged user (customer) in the s... |
| CVE-2023-3289 | MEDIUM | 6.5 | 0.3% | Jul 9, 2024 | A BOLA vulnerability in POST /services allows a low privileged user to create a service for any user in the system (incl... |
| CVE-2023-3288 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | A BOLA vulnerability in POST /providers allows a low privileged user to create a privileged user (provider) in the syste... |
| CVE-2023-3287 | HIGH | 8.8 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in POST /admins allows a low privileged user to create a high privileged user (admin) in the system... |
| CVE-2023-3286 | MEDIUM | 6.5 | 0.3% | Jul 9, 2024 | A BOLA vulnerability in POST /secretaries allows a low privileged user to create a low privileged user (secretary) in th... |
| CVE-2023-38055 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /services/{serviceId} allows a low privileged user to fetch, modify or delete t... |
| CVE-2023-38054 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /customers/{customerId} allows a low privileged user to fetch, modify or delete... |
| CVE-2023-38053 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /settings/{settingName} allows a low privileged user to fetch, modify or delete... |
| CVE-2023-38052 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /admins/{adminId} allows a low privileged user to fetch, modify or delete a hig... |
| CVE-2023-38051 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /secretaries/{secretaryId} allows a low privileged user to fetch, modify or del... |
| CVE-2023-38050 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /webhooks/{webhookId} allows a low privileged user to fetch, modify or delete a... |
| CVE-2023-38049 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /appointments/{appointmentId} allows a low privileged user to fetch, modify or ... |
| CVE-2023-38048 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /providers/{providerId} allows a low privileged user to fetch, modify or delete... |
| CVE-2023-38047 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A BOLA vulnerability in GET, PUT, DELETE /categories/{categoryId} allows a low privileged user to fetch, modify or delet... |
| CVE-2023-3285 | HIGH | 7.7 | 0.3% | Jul 9, 2024 | A BOLA vulnerability in POST /appointments allows a low privileged user to create an appointment for any user in the sys... |
| CVE-2023-50383 | HIGH | 7.2 | 1.9% | Jul 8, 2024 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11.... |
| CVE-2023-50382 | HIGH | 7.2 | 1.9% | Jul 8, 2024 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11.... |
| CVE-2023-50381 | HIGH | 7.2 | 3.2% | Jul 8, 2024 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11.... |
| CVE-2023-50330 | HIGH | 7.2 | 1.1% | Jul 8, 2024 | A stack-based buffer overflow vulnerability exists in the boa getInfo functionality of Realtek rtl819x Jungle SDK v3.4.1... |
| CVE-2023-50244 | HIGH | 7.2 | 1.4% | Jul 8, 2024 | Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v... |
| CVE-2023-50243 | HIGH | 7.2 | 1.4% | Jul 8, 2024 | Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v... |
| CVE-2023-50240 | HIGH | 7.2 | 1.4% | Jul 8, 2024 | Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819... |
| CVE-2023-50239 | HIGH | 7.2 | 1.4% | Jul 8, 2024 | Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819... |
| CVE-2023-49867 | HIGH | 7.2 | 1.1% | Jul 8, 2024 | A stack-based buffer overflow vulnerability exists in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.1... |
| CVE-2023-49595 | HIGH | 7.2 | 0.9% | Jul 8, 2024 | A stack-based buffer overflow vulnerability exists in the boa rollback_control_code functionality of Realtek rtl819x Jun... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now