2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-21451HIGH7.8A Stack-based overflow vulnerability in IpcRxEmbmsSessionList in SECRIL prior to Android S(12) allows attacker to cause ...
CVE-2023-21450LOW2.1Missing Authorization vulnerability in One Hand Operation + prior to version 6.1.21 allows multi-users to access owner&#...
CVE-2023-21448LOW3.3Path traversal vulnerability in Samsung Cloud prior to version 5.3.0.32 allows attacker to access specific png file.
CVE-2023-21447LOW3.3Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access info...
CVE-2023-21446MEDIUM5.5Improper input validation in MyFiles prior to version 12.2.09 in Android R(11), 13.1.03.501 in Android S( 12) and 14.1.0...
CVE-2023-21445HIGH7.8Improper access control vulnerability in MyFiles prior to versions 12.2.09 in Android R(11), 13.1.03.501 in Android S(12...
CVE-2023-21444HIGH8.8Improper cryptographic implementation in Samsung Flow for PC 4.9.14.0 allows adjacent attackers to decrypt encrypted mes...
CVE-2023-21443HIGH8.8Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to d...
CVE-2023-21442MEDIUM5.5Improper access control vulnerability in Runestone application prior to version 2.9.09.003 in Android R(11) and 3.2.01.0...
CVE-2023-21441MEDIUM5.5Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1...
CVE-2023-21440MEDIUM5.5Improper access control vulnerability in WindowManagerService prior to SMR Feb-2023 Release 1 allows attackers to take a...
CVE-2023-21439HIGH7.8Improper input validation vulnerability in UwbDataTxStatusEvent prior to SMR Feb-2023 Release 1 allows attackers to laun...
CVE-2023-21438LOW2.4Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by...
CVE-2023-21437MEDIUM5.5Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to acc...
CVE-2023-21436LOW3.3Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account ID.
CVE-2023-21435MEDIUM5.5Exposure of Sensitive Information vulnerability in Fingerprint TA prior to SMR Feb-2023 Release 1 allows attackers to ac...
CVE-2023-21434MEDIUM6.1Improper input validation vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to execute Java...
CVE-2023-21433HIGH7.8Improper access control vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to install applic...
CVE-2023-21432HIGH7.8Improper access control vulnerabilities in Smart Things prior to 1.7.93 allows to attacker to invite others without auth...
CVE-2023-21431LOW3.3Improper input validation in Bixby Vision prior to version 3.7.70.17 allows attacker to access data of Bixby Vision.
CVE-2023-21430HIGH7.8An out-of-bound read vulnerability in mapToBuffer function in libSDKRecognitionText.spensdk.samsung.so library prior to ...
CVE-2023-21429LOW3.3Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID.
CVE-2023-21428LOW3.3Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Pre...
CVE-2023-21427MEDIUM6.5Improper access control vulnerability in NfcTile prior to SMR Jan-2023 Release 1 allows to attacker to use NFC without u...
CVE-2023-21426MEDIUM5.5Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardem...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now