2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21695 | HIGH | 8.8 | 1.0% | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
| CVE-2023-21694 | MEDIUM | 6.8 | 0.6% | Feb 14, 2023 | Windows Fax Service Remote Code Execution Vulnerability |
| CVE-2023-21693 | MEDIUM | 5.7 | 1.4% | Feb 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability |
| CVE-2023-21692 | CRITICAL | 9.8 | 21.2% | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
| CVE-2023-21691 | HIGH | 7.5 | 1.4% | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability |
| CVE-2023-21690 | CRITICAL | 9.8 | 27.5% | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
| CVE-2023-21689 | CRITICAL | 9.8 | 26.5% | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
| CVE-2023-21688 | HIGH | 7.8 | 3.6% | Feb 14, 2023 | NT OS Kernel Elevation of Privilege Vulnerability |
| CVE-2023-21687 | MEDIUM | 5.5 | 0.5% | Feb 14, 2023 | HTTP.sys Information Disclosure Vulnerability |
| CVE-2023-21686 | HIGH | 8.8 | 1.1% | Feb 14, 2023 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2023-21685 | HIGH | 8.8 | 1.2% | Feb 14, 2023 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2023-21684 | HIGH | 8.8 | 1.3% | Feb 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability |
| CVE-2023-21573 | MEDIUM | 5.4 | 0.6% | Feb 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-21572 | MEDIUM | 6.5 | 0.6% | Feb 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-21571 | MEDIUM | 5.4 | 0.6% | Feb 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-21570 | MEDIUM | 5.4 | 0.6% | Feb 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-21568 | HIGH | 7.3 | 0.9% | Feb 14, 2023 | Microsoft SQL Server Integration Service (VS extension) Remote Code Execution Vulnerability |
| CVE-2023-21564 | HIGH | 7.1 | 0.9% | Feb 14, 2023 | Azure DevOps Server Cross-Site Scripting Vulnerability |
| CVE-2023-21529 | HIGH | 8.8 | 62.1% | Feb 14, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-21528 | HIGH | 7.8 | 0.4% | Feb 14, 2023 | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2023-25725 | CRITICAL | 9.1 | 5.5% | Feb 14, 2023 | HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers are inadvertently lost in some situatio... |
| CVE-2023-25571 | MEDIUM | 5.4 | 0.5% | Feb 14, 2023 | Backstage is an open platform for building developer portals. `@backstage/catalog-model` prior to version 1.2.0, `@backs... |
| CVE-2023-25567 | HIGH | 7.5 | 1.1% | Feb 14, 2023 | GSS-NTLMSSP, a mechglue plugin for the GSSAPI library that implements NTLM authentication, has an out-of-bounds read whe... |
| CVE-2023-25566 | HIGH | 7.5 | 1.1% | Feb 14, 2023 | GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication. Prior to version 1.2.0, a m... |
| CVE-2023-25565 | HIGH | 7.5 | 1.1% | Feb 14, 2023 | GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication. Prior to version 1.2.0, an ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now