2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43636 | HIGH | 8.8 | 0.1% | Sep 20, 2023 | In EVE OS, the “measured boot” mechanism prevents a compromised device from accessing the encrypted data located in t... |
| CVE-2023-43635 | HIGH | 8.8 | 0.1% | Sep 20, 2023 | Vault Key Sealed With SHA1 PCRs The measured boot solution implemented in EVE OS leans on a PCR locking mechanism... |
| CVE-2023-43630 | HIGH | 8.8 | 0.1% | Sep 20, 2023 | PCR14 is not in the list of PCRs that seal/unseal the “vault” key, but due to the change that was implemented in commit ... |
| CVE-2023-41902 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | An XPC misconfiguration vulnerability in CoreCode MacUpdater before 2.3.8, and 3.x before 3.1.2, allows attackers to esc... |
| CVE-2023-4236 | HIGH | 7.5 | 2.1% | Sep 20, 2023 | A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assert... |
| CVE-2023-43477 | HIGH | 8.8 | 15.7% | Sep 20, 2023 | The ping_from parameter of ping_tracerte.cgi in the web UI of Telstra Smart Modem Gen 2 (Arcadyan LH1000), firmware vers... |
| CVE-2023-3341 | HIGH | 7.5 | 2.6% | Sep 20, 2023 | The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsi... |
| CVE-2023-5042 | HIGH | 7.5 | 0.3% | Sep 20, 2023 | Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber ... |
| CVE-2023-4853 | HIGH | 8.1 | 1.2% | Sep 20, 2023 | A flaw was found in Quarkus where HTTP security policies are not sanitizing certain character permutations correctly whe... |
| CVE-2023-41375 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | Use after free vulnerability exists in Kostac PLC Programming Software Version 1.6.11.0. Arbitrary code may be executed ... |
| CVE-2023-41374 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | Double free issue exists in Kostac PLC Programming Software Version 1.6.11.0 and earlier. Arbitrary code may be executed... |
| CVE-2023-43620 | HIGH | 7.8 | 0.3% | Sep 20, 2023 | An issue was discovered in Croc through 9.6.5. A sender may place ANSI or CSI escape sequences in a filename to attack t... |
| CVE-2023-43619 | HIGH | 7.8 | 0.3% | Sep 20, 2023 | An issue was discovered in Croc through 9.6.5. A sender may send dangerous new files to a receiver, such as executable c... |
| CVE-2023-2163 | HIGH | 8.8 | 3.5% | Sep 20, 2023 | Incorrect verifier pruning in BPF in Linux Kernel >=5.4 leads to unsafe code paths being incorrectly marked as safe, res... |
| CVE-2023-4088 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation multiple FA engineering software products... |
| CVE-2023-31015 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the REST service where a host user may cause as improper authentication ... |
| CVE-2023-31013 | HIGH | 8.8 | 0.5% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the REST service, where an attacker may cause improper input validation.... |
| CVE-2023-31012 | HIGH | 8.8 | 0.5% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation. ... |
| CVE-2023-31011 | HIGH | 8.8 | 0.5% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation. ... |
| CVE-2023-31010 | HIGH | 8.8 | 0.6% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation. A successfu... |
| CVE-2023-38887 | HIGH | 8.8 | 1.3% | Sep 20, 2023 | File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and... |
| CVE-2023-38886 | HIGH | 7.2 | 31.8% | Sep 20, 2023 | An issue in Dolibarr ERP CRM v.17.0.1 and before allows a remote privileged attacker to execute arbitrary code via a cra... |
| CVE-2023-31008 | HIGH | 7.8 | 0.2% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation. A successfu... |
| CVE-2023-25532 | HIGH | 7.5 | 0.5% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause insufficient protection of credentials... |
| CVE-2023-25529 | HIGH | 8.1 | 0.5% | Sep 20, 2023 | NVIDIA DGX H100 BMC and DGX A100 BMC contains a vulnerability in the host KVM daemon, where an unauthenticated attacker ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now