2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34356 | HIGH | 8.8 | 5.5% | Oct 11, 2023 | An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in ... |
| CVE-2023-28381 | HIGH | 8.8 | 5.9% | Oct 11, 2023 | An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6.... |
| CVE-2023-27380 | HIGH | 8.8 | 5.7% | Oct 11, 2023 | An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (i... |
| CVE-2023-44119 | HIGH | 7.5 | 0.3% | Oct 11, 2023 | Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will aff... |
| CVE-2023-44114 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service... |
| CVE-2023-44108 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the ... |
| CVE-2023-5520 | HIGH | 7.7 | 0.3% | Oct 11, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-44111 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability m... |
| CVE-2023-44104 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may aff... |
| CVE-2023-44103 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Out-of-bounds read vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect servic... |
| CVE-2023-44101 | HIGH | 7.5 | 0.3% | Oct 11, 2023 | The Bluetooth module has a vulnerability in permission control for broadcast notifications.Successful exploitation of th... |
| CVE-2023-44100 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may aff... |
| CVE-2023-44097 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerabil... |
| CVE-2023-44095 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Use-After-Free (UAF) vulnerability in the surfaceflinger module.Successful exploitation of this vulnerability can cause ... |
| CVE-2023-26370 | HIGH | 7.8 | 0.3% | Oct 11, 2023 | Adobe Photoshop versions 23.5.5 (and earlier) and 24.7 (and earlier) are affected by an Access of Uninitialized Pointer ... |
| CVE-2023-44109 | HIGH | 7.5 | 0.3% | Oct 11, 2023 | Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiali... |
| CVE-2023-44096 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability ... |
| CVE-2023-44093 | HIGH | 7.5 | 0.3% | Oct 11, 2023 | Vulnerability of package names' public keys not being verified in the security module.Successful exploitation of this vu... |
| CVE-2023-42138 | HIGH | 7.8 | 0.2% | Oct 11, 2023 | Out-of-bounds read vulnerability exists in KV STUDIO Ver. 11.62 and earlier and KV REPLAY VIEWER Ver. 2.62 and earlier. ... |
| CVE-2023-4990 | HIGH | 7.5 | 0.6% | Oct 11, 2023 | Directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) may allow attackers to read arbi... |
| CVE-2023-44997 | HIGH | 8.8 | 0.2% | Oct 11, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Nitin Rathod WP Forms Puzzle Captcha plugin <= 4.1 versions. |
| CVE-2023-37536 | HIGH | 8.8 | 1.4% | Oct 11, 2023 | An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP... |
| CVE-2023-26320 | HIGH | 8.1 | 1.0% | Oct 11, 2023 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Route... |
| CVE-2023-26319 | HIGH | 7.2 | 0.9% | Oct 11, 2023 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Route... |
| CVE-2023-26318 | HIGH | 7.2 | 0.5% | Oct 11, 2023 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Xiaomi Xiaomi Router allows Over... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now