2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-4936MEDIUM6.7It is possible to sideload a compromised DLL during the installation at elevated privilege.
CVE-2023-34354MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the upload_brand.cgi functionality of peplink Surf SOHO HW1 ...
CVE-2023-4957MEDIUM4.3A vulnerability of authentication bypass has been found on a Zebra Technologies ZTC ZT410-203dpi ZPL printer. This vulne...
CVE-2023-45396MEDIUM6.5An Insecure Direct Object Reference (IDOR) vulnerability leads to events profiles access in Elenos ETG150 FM transmitter...
CVE-2023-37538MEDIUM6.1HCL Digital Experience is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In...
CVE-2023-44110MEDIUM4.3Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availabi...
CVE-2023-44102MEDIUM5.3Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability can cau...
CVE-2023-41304MEDIUM5.3Parameter verification vulnerability in the window module.Successful exploitation of this vulnerability may cause the si...
CVE-2023-38217MEDIUM5.5Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by an Out-of-bounds Read vulnerability ...
CVE-2023-38216MEDIUM5.5Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by a Use After Free vulnerability that ...
CVE-2023-44094MEDIUM5.3Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the ...
CVE-2023-45194MEDIUM4.3Use of default credentials vulnerability in MR-GM2 firmware Ver. 3.00.03 and earlier, and MR-GM3 (-D/-K/-S/-DK/-DKS/-M/-...
CVE-2023-44689MEDIUM4.3e-Gov Client Application (Windows version) versions prior to 2.1.1.0 and e-Gov Client Application (macOS version) versio...
CVE-2023-26220MEDIUM5.4The Spotfire Library component of TIBCO Software Inc.'s Spotfire Analyst and Spotfire Server contains an easily exploita...
CVE-2023-36126MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Appointment Sc...
CVE-2023-45648MEDIUM5.3Improper Input Validation vulnerability in Apache Tomcat.Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 throug...
CVE-2023-45129MEDIUM4.9Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. Prior to version 1.94.0...
CVE-2023-42795MEDIUM5.3Incomplete Cleanup vulnerability in Apache Tomcat.When recycling various internal objects in Apache Tomcat from 11.0.0-M...
CVE-2023-42794MEDIUM5.9Incomplete Cleanup vulnerability in Apache Tomcat. The internal fork of Commons FileUpload packaged with Apache Tomcat ...
CVE-2023-41763MEDIUM5.3Skype for Business Elevation of Privilege Vulnerability
CVE-2023-36728MEDIUM5.5Microsoft SQL Server Denial of Service Vulnerability
CVE-2023-36724MEDIUM5.5Windows Power Management Service Information Disclosure Vulnerability
CVE-2023-36722MEDIUM4.4Active Directory Domain Services Information Disclosure Vulnerability
CVE-2023-36717MEDIUM6.5Windows Virtual Trusted Platform Module Denial of Service Vulnerability
CVE-2023-36713MEDIUM5.5Windows Common Log File System Driver Information Disclosure Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now