2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-46845 | HIGH | 7.2 | 1.6% | Nov 7, 2023 | EC-CUBE 3 series (3.0.0 to 3.0.18-p6) and 4 series (4.0.0 to 4.0.6-p3, 4.1.0 to 4.1.2-p2, and 4.2.0 to 4.2.2) contain an... |
| CVE-2023-43886 | HIGH | 7.1 | 0.6% | Nov 7, 2023 | A buffer overflow in the HTTP server component of Tenda RX9 Pro v22.03.02.20 might allow an authenticated attacker to ov... |
| CVE-2023-43885 | HIGH | 8.1 | 0.7% | Nov 7, 2023 | Missing error handling in the HTTP server component of Tenda RX9 Pro Firmware V22.03.02.20 allows authenticated attacker... |
| CVE-2023-42545 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in Phone prior to versions 12.7.20.12 in Android 11, 13... |
| CVE-2023-42543 | HIGH | 7.5 | 0.5% | Nov 7, 2023 | Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows att... |
| CVE-2023-42538 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to ... |
| CVE-2023-42537 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause... |
| CVE-2023-42536 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause ou... |
| CVE-2023-42535 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary cod... |
| CVE-2023-42532 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the netw... |
| CVE-2023-42531 | HIGH | 7.1 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in SmsController prior to SMR Nov-2023 Release1 allows local attackers to bypass r... |
| CVE-2023-42530 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi an... |
| CVE-2023-42529 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitra... |
| CVE-2023-42528 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local... |
| CVE-2023-30739 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to exe... |
| CVE-2023-33074 | HIGH | 7.8 | 0.1% | Nov 7, 2023 | Memory corruption in Audio when SSR event is triggered after music playback is stopped. |
| CVE-2023-33061 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. |
| CVE-2023-33059 | HIGH | 7.8 | 0.1% | Nov 7, 2023 | Memory corruption in Audio while processing the VOC packet data from ADSP. |
| CVE-2023-33056 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE. |
| CVE-2023-33055 | HIGH | 7.8 | 0.1% | Nov 7, 2023 | Memory Corruption in Audio while invoking callback function in driver from ADSP. |
| CVE-2023-33048 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Transient DOS in WLAN Firmware while parsing t2lm buffers. |
| CVE-2023-33047 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Transient DOS in WLAN Firmware while parsing no-inherit IES. |
| CVE-2023-33031 | HIGH | 7.8 | 0.1% | Nov 7, 2023 | Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer. |
| CVE-2023-28574 | HIGH | 7.8 | 0.1% | Nov 7, 2023 | Memory corruption in core services when Diag handler receives a command to configure event listeners. |
| CVE-2023-28572 | HIGH | 8.8 | 0.4% | Nov 7, 2023 | Memory corruption in WLAN HOST while processing the WLAN scan descriptor list. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now