2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21451 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause ... |
| CVE-2023-21450 | LOW | 2.1 | 0.3% | Feb 9, 2023 | Missing Authorization vulnerability in One Hand Operation + prior to version 6.1.21 allows multi-users to access owner&#... |
| CVE-2023-21448 | LOW | 3.3 | 0.2% | Feb 9, 2023 | Path traversal vulnerability in Samsung Cloud prior to version 5.3.0.32 allows attacker to access specific png file. |
| CVE-2023-21447 | LOW | 3.3 | 0.1% | Feb 9, 2023 | Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access info... |
| CVE-2023-21446 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Improper input validation in MyFiles prior to version 12.2.09 in Android R(11), 13.1.03.501 in Android S( 12) and 14.1.0... |
| CVE-2023-21445 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Improper access control vulnerability in MyFiles prior to versions 12.2.09 in Android R(11), 13.1.03.501 in Android S(12... |
| CVE-2023-21444 | HIGH | 8.8 | 0.2% | Feb 9, 2023 | Improper cryptographic implementation in Samsung Flow for PC 4.9.14.0 allows adjacent attackers to decrypt encrypted mes... |
| CVE-2023-21443 | HIGH | 8.8 | 0.2% | Feb 9, 2023 | Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to d... |
| CVE-2023-21442 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Improper access control vulnerability in Runestone application prior to version 2.9.09.003 in Android R(11) and 3.2.01.0... |
| CVE-2023-21441 | MEDIUM | 5.5 | 0.1% | Feb 9, 2023 | Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1... |
| CVE-2023-21440 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Improper access control vulnerability in WindowManagerService prior to SMR Feb-2023 Release 1 allows attackers to take a... |
| CVE-2023-21439 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Improper input validation vulnerability in UwbDataTxStatusEvent prior to SMR Feb-2023 Release 1 allows attackers to laun... |
| CVE-2023-21438 | LOW | 2.4 | 0.2% | Feb 9, 2023 | Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by... |
| CVE-2023-21437 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to acc... |
| CVE-2023-21436 | LOW | 3.3 | 0.1% | Feb 9, 2023 | Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account ID. |
| CVE-2023-21435 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Exposure of Sensitive Information vulnerability in Fingerprint TA prior to SMR Feb-2023 Release 1 allows attackers to ac... |
| CVE-2023-21434 | MEDIUM | 6.1 | 12.9% | Feb 9, 2023 | Improper input validation vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to execute Java... |
| CVE-2023-21433 | HIGH | 7.8 | 3.7% | Feb 9, 2023 | Improper access control vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to install applic... |
| CVE-2023-21432 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Improper access control vulnerabilities in Smart Things prior to 1.7.93 allows to attacker to invite others without auth... |
| CVE-2023-21431 | LOW | 3.3 | 0.2% | Feb 9, 2023 | Improper input validation in Bixby Vision prior to version 3.7.70.17 allows attacker to access data of Bixby Vision. |
| CVE-2023-21430 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to ... |
| CVE-2023-21429 | LOW | 3.3 | 0.2% | Feb 9, 2023 | Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID. |
| CVE-2023-21428 | LOW | 3.3 | 0.2% | Feb 9, 2023 | Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Pre... |
| CVE-2023-21427 | MEDIUM | 6.5 | 0.3% | Feb 9, 2023 | Improper access control vulnerability in NfcTile prior to SMR Jan-2023 Release 1 allows to attacker to use NFC without u... |
| CVE-2023-21426 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardem... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now