2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-37020HIGH8.6Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ...
CVE-2023-37019HIGH8.6Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the...
CVE-2023-37018HIGH8.6Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the...
CVE-2023-37017HIGH8.6Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ...
CVE-2023-37016HIGH8.6Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ...
CVE-2023-37015HIGH8.6Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the...
CVE-2023-37014HIGH7.5Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the...
CVE-2023-37013HIGH7.3Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a sufficiently large ASN.1 packet...
CVE-2023-36998HIGH8.9The NextEPC MME <= 1.0.1 (fixed in commit a8492c9c5bc0a66c6999cb5a263545b32a4109df) contains a stack-based buffer overfl...
CVE-2023-40132HIGH7.8In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content providers read permiss...
CVE-2023-37032HIGH7.5A Stack-based buffer overflow in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 084...
CVE-2023-37029HIGH7.5Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-...
CVE-2023-37024HIGH7.5A reachable assertion in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8...
CVE-2023-50733HIGH8.6A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services feature of newer Lexmark devi...
CVE-2023-50739HIGH8.8A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. ...
CVE-2023-37937HIGH7.8An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSwitch ve...
CVE-2023-37931HIGH8.8An improper neutralization of special elements used in an sql command ('sql injection') vulnerability [CWE-88] in FortiV...
CVE-2023-42244HIGH8.8An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQ...
CVE-2023-42232HIGH7.5Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via the Navigator/Index function...
CVE-2023-42231HIGH8.1Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Incorrect Access Control. Low privileged users can d...
CVE-2023-42228HIGH8.8Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Incorrect Access Control. Low privileged users can e...
CVE-2023-42227HIGH7.5Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via the WSCView/Save function.
CVE-2023-42226HIGH7.5Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via Email/SaveAttachment functio...
CVE-2023-42225HIGH7.5Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via the Attachment/DownloadTempF...
CVE-2023-24012HIGH8.2An attacker can arbitrarily craft malicious DDS Participants (or ROS 2 Nodes) with valid certificates to compromise and ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now