2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-34356HIGH8.8An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in ...
CVE-2023-28381HIGH8.8An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6....
CVE-2023-27380HIGH8.8An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (i...
CVE-2023-44119HIGH7.5Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will aff...
CVE-2023-44114HIGH7.5Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service...
CVE-2023-44108HIGH7.5Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the ...
CVE-2023-5520HIGH7.7Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-44111HIGH7.5Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability m...
CVE-2023-44104HIGH7.5Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may aff...
CVE-2023-44103HIGH7.5Out-of-bounds read vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect servic...
CVE-2023-44101HIGH7.5The Bluetooth module has a vulnerability in permission control for broadcast notifications.Successful exploitation of th...
CVE-2023-44100HIGH7.5Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may aff...
CVE-2023-44097HIGH7.5Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerabil...
CVE-2023-44095HIGH7.5Use-After-Free (UAF) vulnerability in the surfaceflinger module.Successful exploitation of this vulnerability can cause ...
CVE-2023-26370HIGH7.8Adobe Photoshop versions 23.5.5 (and earlier) and 24.7 (and earlier) are affected by an Access of Uninitialized Pointer ...
CVE-2023-44109HIGH7.5Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiali...
CVE-2023-44096HIGH7.5 Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability ...
CVE-2023-44093HIGH7.5Vulnerability of package names' public keys not being verified in the security module.Successful exploitation of this vu...
CVE-2023-42138HIGH7.8Out-of-bounds read vulnerability exists in KV STUDIO Ver. 11.62 and earlier and KV REPLAY VIEWER Ver. 2.62 and earlier. ...
CVE-2023-4990HIGH7.5Directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) may allow attackers to read arbi...
CVE-2023-44997HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Nitin Rathod WP Forms Puzzle Captcha plugin <= 4.1 versions.
CVE-2023-37536HIGH8.8An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP...
CVE-2023-26320HIGH8.1Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Route...
CVE-2023-26319HIGH7.2Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Route...
CVE-2023-26318HIGH7.2Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Xiaomi Xiaomi Router allows Over...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now