2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45596 | MEDIUM | 5.3 | 0.5% | Mar 5, 2024 | A CWE-425 “Direct Request ('Forced Browsing')” vulnerability in the “file_configuration” functionality of the web applic... |
| CVE-2023-45595 | HIGH | 8.8 | 0.4% | Mar 5, 2024 | A CWE-434 “Unrestricted Upload of File with Dangerous Type” vulnerability in the “file_configuration” functionality of t... |
| CVE-2023-45594 | MEDIUM | 6.8 | 0.3% | Mar 5, 2024 | A CWE-552 “Files or Directories Accessible to External Parties” vulnerability in the embedded Chromium browser allows a ... |
| CVE-2023-45593 | MEDIUM | 6.8 | 0.3% | Mar 5, 2024 | A CWE-184 “Incomplete List of Disallowed Inputs” vulnerability in the embedded Chromium browser (concerning the handling... |
| CVE-2023-45592 | CRITICAL | 9.8 | 0.7% | Mar 5, 2024 | A CWE-250 “Execution with Unnecessary Privileges” vulnerability in the embedded Chromium browser (due to the binary bein... |
| CVE-2023-45591 | HIGH | 8.8 | 0.7% | Mar 5, 2024 | A CWE-122 “Heap-based Buffer Overflow” vulnerability in the “logger_generic” function of the “Ax_rtu” binary allows a re... |
| CVE-2023-5456 | CRITICAL | 9.8 | 0.6% | Mar 5, 2024 | A CWE-798 “Use of Hard-coded Credentials” vulnerability in the MariaDB database of the web application allows a remote u... |
| CVE-2023-42419 | LOW | 3.8 | 0.1% | Mar 5, 2024 | Maintenance Server, in Cybellum's QCOW air-gapped distribution (China Edition), versions 2.15.5 through 2.27, was compil... |
| CVE-2023-52432 | HIGH | 7.1 | 0.2% | Mar 5, 2024 | Improper input validation in IpcTxSndSetLoopbackCtrl in libsec-ril prior to SMR Sep-2023 Release 1 allows local attacker... |
| CVE-2023-49970 | CRITICAL | 9.8 | 0.8% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the subject parameter at /custome... |
| CVE-2023-49969 | MEDIUM | 4.3 | 0.5% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the id parameter at /customer_sup... |
| CVE-2023-49968 | HIGH | 7.3 | 0.5% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the id parameter at /customer_sup... |
| CVE-2023-49548 | HIGH | 8.8 | 0.8% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the lastname parameter at /custom... |
| CVE-2023-49547 | CRITICAL | 9.8 | 1.1% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the username parameter at /custom... |
| CVE-2023-49546 | HIGH | 8.8 | 0.8% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the email parameter at /customer_... |
| CVE-2023-41829 | MEDIUM | 5 | 0.2% | Mar 4, 2024 | An improper export vulnerability was reported in the Motorola Carrier Services application that could allow a malicious,... |
| CVE-2023-41827 | MEDIUM | 5.1 | 0.2% | Mar 4, 2024 | An improper export vulnerability was reported in the Motorola OTA update application, that could allow a malicious, loca... |
| CVE-2023-6068 | LOW | 3.1 | 0.3% | Mar 4, 2024 | On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA, application of ACL’s may... |
| CVE-2023-32331 | HIGH | 7.5 | 0.7% | Mar 4, 2024 | IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote attacker to cause a deni... |
| CVE-2023-38360 | MEDIUM | 6.1 | 0.3% | Mar 4, 2024 | IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java... |
| CVE-2023-5451 | MEDIUM | 6.1 | 0.3% | Mar 4, 2024 | Forcepoint NGFW Security Management Center Management Server has SMC Downloads optional feature to offer standalone Ma... |
| CVE-2023-38362 | MEDIUM | 5.3 | 0.5% | Mar 4, 2024 | IBM CICS TX Advanced 10.1 could disclose sensitive information to a remote attacker due to observable discrepancy in HTT... |
| CVE-2023-6241 | HIGH | 7 | 0.7% | Mar 4, 2024 | Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GP... |
| CVE-2023-43553 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE. |
| CVE-2023-43552 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Memory corruption while processing MBSSID beacon containing several subelement IE. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now