2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2023-34401LOW3.7Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside profile folder the...
CVE-2023-31331LOW3Improper access control in the DRTM firmware could allow a privileged attacker to perform multiple driver initialization...
CVE-2023-20581LOW2.5Improper access control in the IOMMU may allow a privileged attacker to bypass RMP checks, potentially leading to a loss...
CVE-2023-20507LOW2.3An integer overflow in the ASP could allow a privileged attacker to perform an out-of-bounds write, potentially resultin...
CVE-2023-42242LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42241LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42240LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42239LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42238LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42237LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42236LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42235LOW3.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-5117LOW3.7An issue was discovered in GitLab CE/EE affecting all versions before 17.6.0 in which users were unaware that files uplo...
CVE-2023-37395LOW3.3IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information due to improper encryptio...
CVE-2023-28168LOW3.7Missing Authorization vulnerability in Jerod Santo WordPress Console allows Exploiting Incorrectly Configured Access Con...
CVE-2023-24375LOW3.5Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedI...
CVE-2023-23814LOW3.8Missing Authorization vulnerability in CodePeople CP Multi View Event Calendar allows Exploiting Incorrectly Configured...
CVE-2023-0657LOW3.4A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures local...
CVE-2023-6728LOW3.3Nokia SR OS bof.cfg file encryption is vulnerable to a brute force attack. This weakness allows an attacker in possessio...
CVE-2023-36325LOW3.7i2p before 2.3.0 (Java) allows de-anonymizing the public IPv4 and IPv6 addresses of i2p hidden services (aka eepsites) v...
CVE-2023-52947LOW3.3Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Busines...
CVE-2023-25189LOW3.3BTS is affected by information disclosure vulnerability where mobile network operator personnel connected over BTS Web E...
CVE-2023-25546LOW2.5Out-of-bounds read in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable denia...
CVE-2023-31305LOW1.9Generation of weak and predictable Initialization Vector (IV) in PMFW (Power Management Firmware) may allow an attacker ...
CVE-2023-31304LOW2.3Improper input validation in SMU may allow an attacker with privileges and a compromised physical function (PF)     to ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now