2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40117 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass. This... |
| CVE-2023-40116 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions du... |
| CVE-2023-35794 | HIGH | 8.8 | 0.9% | Oct 27, 2023 | An issue was discovered in Cassia Access Controller 2.1.1.2303271039. The Web SSH terminal endpoint (spawned console) ca... |
| CVE-2023-5829 | HIGH | 8.8 | 0.8% | Oct 27, 2023 | A vulnerability was found in code-projects Admission Management System 1.0. It has been rated as critical. Affected by t... |
| CVE-2023-46852 | HIGH | 7.5 | 0.8% | Oct 27, 2023 | In Memcached before 1.6.22, a buffer overflow exists when processing multiget requests in proxy mode, if there are many ... |
| CVE-2023-4967 | HIGH | 7.5 | 0.9% | Oct 27, 2023 | Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CV... |
| CVE-2023-46290 | HIGH | 8.1 | 2.7% | Oct 27, 2023 | Due to inadequate code logic, a previously unauthenticated threat actor could potentially obtain a local Windows OS use... |
| CVE-2023-46289 | HIGH | 7.5 | 0.9% | Oct 27, 2023 | Rockwell Automation FactoryTalk View Site Edition insufficiently validates user input, which could potentially allow th... |
| CVE-2023-27858 | HIGH | 7.8 | 0.2% | Oct 27, 2023 | Rockwell Automation Arena Simulation contains an arbitrary code execution vulnerability that could potentially allow a ... |
| CVE-2023-27854 | HIGH | 7.8 | 0.3% | Oct 27, 2023 | An arbitrary code execution vulnerability was reported to Rockwell Automation in Arena Simulation that could potentiall... |
| CVE-2023-5826 | HIGH | 8.8 | 0.7% | Oct 27, 2023 | A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. Affected by t... |
| CVE-2023-5443 | HIGH | 7.5 | 0.4% | Oct 27, 2023 | Improper Protection for Outbound Error Messages and Alert Signals vulnerability in EDM Informatics E-invoice allows Acco... |
| CVE-2023-46393 | HIGH | 7.5 | 0.4% | Oct 27, 2023 | gougucms v4.08.18 was discovered to contain a password reset poisoning vulnerability which allows attackers to arbitrari... |
| CVE-2023-5820 | HIGH | 8.8 | 0.3% | Oct 27, 2023 | The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This... |
| CVE-2023-5570 | HIGH | 7.5 | 0.4% | Oct 27, 2023 | Improper Protection for Outbound Error Messages and Alert Signals vulnerability in Inohom Home Manager Gateway allows Ac... |
| CVE-2023-44220 | HIGH | 7.3 | 0.3% | Oct 27, 2023 | SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking... |
| CVE-2023-44219 | HIGH | 7.8 | 0.2% | Oct 27, 2023 | A local privilege escalation vulnerability in SonicWall Directory Services Connector Windows MSI client 4.1.21 and earli... |
| CVE-2023-34059 | HIGH | 7 | 0.4% | Oct 27, 2023 | open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with no... |
| CVE-2023-34058 | HIGH | 7.5 | 0.7% | Oct 27, 2023 | VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operat... |
| CVE-2023-34057 | HIGH | 7.8 | 0.2% | Oct 27, 2023 | VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest vi... |
| CVE-2023-46818 | HIGH | 7.2 | 13.9% | Oct 27, 2023 | An issue was discovered in ISPConfig before 3.2.11p1. PHP code injection can be achieved in the language file editor by ... |
| CVE-2023-46816 | HIGH | 8.8 | 0.6% | Oct 27, 2023 | An issue was discovered in SugarCRM 12 before 12.0.4 and 13 before 13.0.2. A Server Site Template Injection (SSTI) vulne... |
| CVE-2023-46815 | HIGH | 8.8 | 0.6% | Oct 27, 2023 | An issue was discovered in SugarCRM 12 before 12.0.4 and 13 before 13.0.2. An Unrestricted File Upload vulnerability has... |
| CVE-2023-46813 | HIGH | 7 | 0.7% | Oct 27, 2023 | An issue was discovered in the Linux kernel before 6.5.9, exploitable by local users with userspace access to MMIO regis... |
| CVE-2023-5814 | HIGH | 8.8 | 0.4% | Oct 27, 2023 | A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been classified as critical. This affects a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now