2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43518 | CRITICAL | 9.8 | 0.3% | Feb 6, 2024 | Memory corruption in video while parsing invalid mp2 clip. |
| CVE-2023-33058 | CRITICAL | 9.1 | 0.4% | Feb 6, 2024 | Information disclosure in Modem while processing SIB5. |
| CVE-2023-6234 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in CPCA Color LUT Resource Download process of Office Multifunction Printers and Laser Printers(*) which... |
| CVE-2023-6233 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in SLP attribute request process of Office Multifunction Printers and Laser Printers(*) which may allow ... |
| CVE-2023-6232 | CRITICAL | 9.8 | 1.5% | Feb 6, 2024 | Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction... |
| CVE-2023-6231 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in WSD probe request process of Office Multifunction Printers and Laser Printers(*) which may allow an a... |
| CVE-2023-6230 | CRITICAL | 9.8 | 1.5% | Feb 6, 2024 | Buffer overflow in the Address Book password process in authentication of Mobile Device Function of Office Multifunction... |
| CVE-2023-6229 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in CPCA PDL Resource Download process of Office Multifunction Printers and Laser Printers(*) which may a... |
| CVE-2023-46359 | CRITICAL | 9.8 | 80.9% | Feb 6, 2024 | An OS command injection vulnerability in Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier, may allow an unauthen... |
| CVE-2023-6989 | CRITICAL | 9.8 | 56.6% | Feb 5, 2024 | The Shield Security – Smart Bot Blocking & Intrusion Prevention Security plugin for WordPress is vulnerable to Local Fil... |
| CVE-2023-51951 | CRITICAL | 9.8 | 1.4% | Feb 5, 2024 | SQL Injection vulnerability in Stock Management System 1.0 allows a remote attacker to execute arbitrary code via the id... |
| CVE-2023-52138 | CRITICAL | 9.6 | 1.7% | Feb 5, 2024 | Engrampa is an archive manager for the MATE environment. Engrampa is found to be vulnerable to a Path Traversal vulnerab... |
| CVE-2023-7077 | CRITICAL | 9.8 | 0.7% | Feb 5, 2024 | Sharp NEC Displays (P403, P463, P553, P703, P801, X554UN, X464UN, X554UNS, X464UNV, X474HB, X464UNS, X554UNV, X555UNS, X... |
| CVE-2023-31004 | CRITICAL | 9 | 1.0% | Feb 3, 2024 | IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0.6.1 and IBM Security V... |
| CVE-2023-45025 | CRITICAL | 9.8 | 1.1% | Feb 2, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-39303 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploite... |
| CVE-2023-6675 | CRITICAL | 9.8 | 0.6% | Feb 2, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in National Keep Cyber Security Services CyberMath allows ... |
| CVE-2023-47143 | CRITICAL | 9.8 | 0.8% | Feb 2, 2024 | IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.10 is vulnerable to HTTP header injection, cau... |
| CVE-2023-50488 | CRITICAL | 9.8 | 1.2% | Feb 2, 2024 | An issue in Blurams Lumi Security Camera (A31C) v23.0406.435.4120 allows attackers to execute arbitrary code. |
| CVE-2023-48793 | CRITICAL | 9.8 | 7.0% | Feb 2, 2024 | Zoho ManageEngine ADAudit Plus through 7250 allows SQL Injection in the aggregate report feature. |
| CVE-2023-48792 | CRITICAL | 9.8 | 7.0% | Feb 2, 2024 | Zoho ManageEngine ADAudit Plus through 7250 is vulnerable to SQL Injection in the report export option. |
| CVE-2023-32333 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | IBM Maximo Asset Management 7.6.1.3 could allow a remote attacker to log into the admin panel due to improper access con... |
| CVE-2023-50940 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privi... |
| CVE-2023-49617 | CRITICAL | 9.1 | 0.8% | Feb 1, 2024 | The MachineSense application programmable interface (API) is improperly protected and can be accessed without authe... |
| CVE-2023-46706 | CRITICAL | 9.8 | 0.7% | Feb 1, 2024 | Multiple MachineSense devices have credentials unable to be changed by the user or administrator. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now