2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39620 | HIGH | 7.5 | 0.7% | Sep 8, 2023 | An Issue in Buffalo America, Inc. TeraStation NAS TS5410R v.5.00 thru v.0.07 allows a remote attacker to obtain sensitiv... |
| CVE-2023-37377 | HIGH | 7.5 | 0.3% | Sep 8, 2023 | An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, ... |
| CVE-2023-37368 | HIGH | 7.5 | 0.5% | Sep 8, 2023 | An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos Mobile Processor, Au... |
| CVE-2023-40271 | HIGH | 7.5 | 0.3% | Sep 8, 2023 | In Trusted Firmware-M through TF-Mv1.8.0, for platforms that integrate the CryptoCell accelerator, when the CryptoCell P... |
| CVE-2023-36184 | HIGH | 7.5 | 0.9% | Sep 8, 2023 | CMysten Labs Sui blockchain v1.2.0 was discovered to contain a stack overflow via the component /spec/openrpc.json. |
| CVE-2023-4685 | HIGH | 7.8 | 0.2% | Sep 7, 2023 | Delta Electronics' CNCSoft-B version 1.0.0.4 and DOPSoft versions 4.0.0.82 and prior are vulnerable to stack-based buffe... |
| CVE-2023-4528 | HIGH | 7.2 | 27.1% | Sep 7, 2023 | Unsafe deserialization in JSCAPE MFT Server versions prior to 2023.1.9 (Windows, Linux, and MacOS) permits an attacker t... |
| CVE-2023-41064 | HIGH | 7.8 | 15.3% | Sep 7, 2023 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 16.6.1 and iPadOS 16.6.1... |
| CVE-2023-41061 | HIGH | 7.8 | 3.2% | Sep 7, 2023 | A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1... |
| CVE-2023-40060 | HIGH | 7.2 | 0.9% | Sep 7, 2023 | A vulnerability has been identified within Serv-U 15.4 and 15.4 Hotfix 1 that, if exploited, allows an actor to bypass m... |
| CVE-2023-30800 | HIGH | 7.5 | 1.7% | Sep 7, 2023 | The web server used by MikroTik RouterOS version 6 is affected by a heap memory corruption issue. A remote and unauthent... |
| CVE-2023-39424 | HIGH | 8.8 | 0.7% | Sep 7, 2023 | A vulnerability in RDPngFileUpload.dll, as used in the IRM Next Generation booking system, allows a remote attacker to u... |
| CVE-2023-39421 | HIGH | 7.7 | 0.4% | Sep 7, 2023 | The RDPWin.dll component as used in the IRM Next Generation booking engine includes a set of hardcoded API keys for thir... |
| CVE-2023-39420 | HIGH | 8.8 | 0.5% | Sep 7, 2023 | The RDPCore.dll component as used in the IRM Next Generation booking engine, allows a remote user to connect to customer... |
| CVE-2023-39240 | HIGH | 7.2 | 1.2% | Sep 7, 2023 | It is identified a format string vulnerability in ASUS RT-AX56U V2’s iperf client function API. This vulnerability is c... |
| CVE-2023-39239 | HIGH | 7.2 | 1.2% | Sep 7, 2023 | It is identified a format string vulnerability in ASUS RT-AX56U V2’s General function API. This vulnerability is caused... |
| CVE-2023-39238 | HIGH | 7.2 | 1.2% | Sep 7, 2023 | It is identified a format string vulnerability in ASUS RT-AX56U V2. This vulnerability is caused by lacking validation ... |
| CVE-2023-4815 | HIGH | 8.8 | 0.7% | Sep 7, 2023 | Missing Authentication for Critical Function in GitHub repository answerdev/answer prior to v1.1.3. |
| CVE-2023-39237 | HIGH | 8.8 | 1.1% | Sep 7, 2023 | ASUS RT-AC86U Traffic Analyzer - Apps analysis function has insufficient filtering of special character. A remote attac... |
| CVE-2023-39236 | HIGH | 8.8 | 1.1% | Sep 7, 2023 | ASUS RT-AC86U Traffic Analyzer - Statistic function has insufficient filtering of special character. A remote attacker ... |
| CVE-2023-38033 | HIGH | 8.8 | 1.1% | Sep 7, 2023 | ASUS RT-AC86U unused Traffic Analyzer legacy Statistic function has insufficient filtering of special character. A remo... |
| CVE-2023-38032 | HIGH | 8.8 | 1.1% | Sep 7, 2023 | ASUS RT-AC86U AiProtection security- related function has insufficient filtering of special character. A remote attacke... |
| CVE-2023-38031 | HIGH | 8.8 | 1.1% | Sep 7, 2023 | ASUS RT-AC86U Adaptive QoS - Web History function has insufficient filtering of special character. A remote attacker wi... |
| CVE-2023-34357 | HIGH | 7.8 | 0.2% | Sep 7, 2023 | Soar Cloud Ltd. HR Portal has a weak Password Recovery Mechanism for Forgotten Password. The reset password link sent o... |
| CVE-2023-38616 | HIGH | 7 | 0.1% | Sep 6, 2023 | A race condition was addressed with improved state handling. This issue is fixed in macOS Ventura 13.5. An app may be ab... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now