2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7004 | MEDIUM | 6.5 | 0.2% | Mar 15, 2024 | The TTLock App does not employ proper verification procedures to ensure that it is communicating with the expected devic... |
| CVE-2023-7003 | MEDIUM | 6.8 | 0.3% | Mar 15, 2024 | The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, a... |
| CVE-2023-6960 | HIGH | 7.5 | 0.3% | Mar 15, 2024 | TTLock App virtual keys and settings are only deleted client side, and if preserved, can access the lock after intended ... |
| CVE-2023-47699 | MEDIUM | 6.1 | 0.3% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2023-47147 | MEDIUM | 5.3 | 0.4% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 could allow an attacker to overwrite a log message under specific conditions. ... |
| CVE-2023-46181 | LOW | 3.3 | 0.2% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 allows web pages to be stored locally which can be read by another user on the... |
| CVE-2023-51522 | HIGH | 8.8 | 0.2% | Mar 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Paid Member Subscriptions.This issue affects Paid Member S... |
| CVE-2023-51369 | HIGH | 8.8 | 0.3% | Mar 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in SysBasics Customize My Account for WooCommerce.This issue affects Cus... |
| CVE-2023-50898 | HIGH | 8.8 | 0.4% | Mar 15, 2024 | Missing Authorization vulnerability in sirv.Com Sirv.This issue affects Sirv: from n/a through 7.1.2. |
| CVE-2023-50886 | HIGH | 8 | 0.2% | Mar 15, 2024 | Cross-Site Request Forgery (CSRF), Incorrect Authorization vulnerability in wpWax Legal Pages.This issue affects Legal P... |
| CVE-2023-47162 | MEDIUM | 6.1 | 0.3% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2023-46182 | MEDIUM | 5.4 | 0.4% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2023-46179 | MEDIUM | 4.3 | 0.3% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 does not set the secure attribute on authorization tokens or session cookies. ... |
| CVE-2023-51525 | MEDIUM | 4.3 | 0.2% | Mar 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Veribo, Roland Murg WP Simple Booking Calendar.This issue affects WP ... |
| CVE-2023-50861 | HIGH | 8.8 | 0.2% | Mar 15, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).Th... |
| CVE-2023-6725 | MEDIUM | 5.5 | 0.2% | Mar 15, 2024 | An access-control flaw was found in the OpenStack Designate component where private configuration information including ... |
| CVE-2023-50677 | HIGH | 8.8 | 0.3% | Mar 14, 2024 | An issue in NETGEAR-DGND4000 v.1.1.00.15_1.00.15 allows a remote attacker to escalate privileges via the next_file param... |
| CVE-2023-42286 | CRITICAL | 9.8 | 1.0% | Mar 14, 2024 | There is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execu... |
| CVE-2023-42938 | HIGH | 7.8 | 0.2% | Mar 14, 2024 | A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.13.1 for Windows. A local attacker ma... |
| CVE-2023-43490 | MEDIUM | 5.3 | 0.2% | Mar 14, 2024 | Incorrect calculation in microcode keying mechanism for some Intel(R) Xeon(R) D Processors with Intel(R) SGX may allow a... |
| CVE-2023-39368 | MEDIUM | 6.5 | 0.8% | Mar 14, 2024 | Protection mechanism failure of bus lock regulator for some Intel(R) Processors may allow an unauthenticated user to pot... |
| CVE-2023-38575 | MEDIUM | 5.5 | 0.3% | Mar 14, 2024 | Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized... |
| CVE-2023-35191 | MEDIUM | 6.8 | 0.5% | Mar 14, 2024 | Uncontrolled resource consumption for some Intel(R) SPS firmware versions may allow a privileged user to potentially ena... |
| CVE-2023-32666 | HIGH | 7.2 | 0.2% | Mar 14, 2024 | On-chip debug and test interface with improper access control in some 4th Generation Intel(R) Xeon(R) Processors when us... |
| CVE-2023-32633 | MEDIUM | 6.7 | 0.2% | Mar 14, 2024 | Improper input validation in the Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated u... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now