2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40109 | HIGH | 7.8 | 0.2% | Feb 15, 2024 | In createFromParcel of UsbConfiguration.java, there is a possible background activity launch (BAL) due to a permissions ... |
| CVE-2023-40107 | HIGH | 7.8 | 0.1% | Feb 15, 2024 | In ARTPWriter of ARTPWriter.cpp, there is a possible use after free due to uninitialized data. This could lead to local ... |
| CVE-2023-40106 | HIGH | 7.8 | 0.1% | Feb 15, 2024 | In sanitizeSbn of NotificationManagerService.java, there is a possible way to launch an activity from the background due... |
| CVE-2023-40105 | MEDIUM | 5.5 | 0.1% | Feb 15, 2024 | In backupAgentCreated of ActivityManagerService.java, there is a possible way to leak sensitive data due to a missing pe... |
| CVE-2023-40104 | HIGH | 7.5 | 0.3% | Feb 15, 2024 | In ca-certificates, there is a possible way to read encrypted TLS data due to untrusted cryptographic certificates. This... |
| CVE-2023-40100 | HIGH | 7.8 | 0.1% | Feb 15, 2024 | In discovery_thread of Dns64Configuration.cpp, there is a possible memory corruption due to a use after free. This could... |
| CVE-2023-6123 | MEDIUM | 6.1 | 0.5% | Feb 15, 2024 | Improper Neutralization vulnerability affects OpenText ALM Octane version 16.2.100 and above. The vulnerability could re... |
| CVE-2023-40057 | CRITICAL | 9 | 4.2% | Feb 15, 2024 | The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited,... |
| CVE-2023-6937 | MEDIUM | 5.3 | 0.5% | Feb 15, 2024 | wolfSSL prior to 5.6.6 did not check that messages in one (D)TLS record do not span key boundaries. As a result, it was ... |
| CVE-2023-7081 | CRITICAL | 9.8 | 0.5% | Feb 15, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in POSTAHSİL Online P... |
| CVE-2023-6255 | HIGH | 7.5 | 0.4% | Feb 15, 2024 | Use of Hard-coded Credentials vulnerability in Utarit Information Technologies SoliPay Mobile App allows Read Sensitive ... |
| CVE-2023-5155 | CRITICAL | 9.8 | 0.5% | Feb 15, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Utarit Information... |
| CVE-2023-4993 | HIGH | 7.5 | 0.4% | Feb 15, 2024 | Incorrect Use of Privileged APIs vulnerability in Utarit Information Technologies SoliPay Mobile App allows Collect Data... |
| CVE-2023-47537 | MEDIUM | 4.8 | 0.2% | Feb 15, 2024 | An improper certificate validation vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.6, F... |
| CVE-2023-45581 | HIGH | 7.2 | 0.8% | Feb 15, 2024 | An improper privilege management vulnerability [CWE-269] in Fortinet FortiClientEMS version 7.2.0 through 7.2.2 and befo... |
| CVE-2023-44253 | MEDIUM | 5 | 0.7% | Feb 15, 2024 | An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet FortiManager version 7... |
| CVE-2023-26206 | MEDIUM | 6.1 | 0.5% | Feb 15, 2024 | An improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiNAC 9.4.0 - 9.4... |
| CVE-2023-39245 | CRITICAL | 9.8 | 0.4% | Feb 15, 2024 | DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability i... |
| CVE-2023-39244 | CRITICAL | 9.8 | 0.5% | Feb 15, 2024 | DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in... |
| CVE-2023-32484 | CRITICAL | 9.8 | 0.6% | Feb 15, 2024 | Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input val... |
| CVE-2023-32462 | CRITICAL | 9.8 | 1.8% | Feb 15, 2024 | Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remot... |
| CVE-2023-28078 | CRITICAL | 9.1 | 0.7% | Feb 15, 2024 | Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A ... |
| CVE-2023-4539 | HIGH | 7.5 | 0.5% | Feb 15, 2024 | Use of a hard-coded password for a special database account created during Comarch ERP XL installation allows an attacke... |
| CVE-2023-4538 | MEDIUM | 6.5 | 0.4% | Feb 15, 2024 | The database access credentials configured during installation are stored in a special table, and are encrypted with a s... |
| CVE-2023-4537 | HIGH | 7.4 | 0.6% | Feb 15, 2024 | Comarch ERP XL client is vulnerable to MS SQL protocol downgrade request from a server side, what could lead to an unenc... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now