2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47200 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | A plug-in manager origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacke... |
| CVE-2023-47199 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47198 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47197 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47196 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47195 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47194 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47193 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47192 | HIGH | 7.8 | 0.2% | Jan 23, 2024 | An agent link vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate privileg... |
| CVE-2023-46892 | HIGH | 8.8 | 0.3% | Jan 23, 2024 | The radio frequency communication protocol being used by Meross MSH30Q 4.5.23 is vulnerable to replay attacks, allowing ... |
| CVE-2023-41178 | MEDIUM | 6.1 | 1.8% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-41177 | MEDIUM | 6.1 | 0.5% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-41176 | MEDIUM | 6.1 | 1.8% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-38627 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38626 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38625 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38624 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-7238 | MEDIUM | 6.1 | 0.3% | Jan 23, 2024 | A XSS payload can be uploaded as a DICOM study and when a user tries to view the infected study inside the Osimis WebVi... |
| CVE-2023-6926 | HIGH | 7.8 | 0.5% | Jan 23, 2024 | There is an OS command injection vulnerability in Crestron AM-300 firmware version 1.4499.00018 which may enable a user... |
| CVE-2023-46889 | MEDIUM | 5.7 | 0.2% | Jan 23, 2024 | Meross MSH30Q 4.5.23 is vulnerable to Cleartext Transmission of Sensitive Information. During the device setup phase, th... |
| CVE-2023-42144 | MEDIUM | 5.5 | 0.1% | Jan 23, 2024 | Cleartext Transmission during initial setup in Shelly TRV 20220811-15234 v.2.1.8 allows a local attacker to obtain the W... |
| CVE-2023-42143 | MEDIUM | 5.4 | 0.2% | Jan 23, 2024 | Missing Integrity Check in Shelly TRV 20220811-152343/v2.1.8@5afc928c allows malicious users to create a backdoor by red... |
| CVE-2023-51210 | CRITICAL | 9.8 | 1.1% | Jan 23, 2024 | SQL injection vulnerability in Webkul Bundle Product 6.0.1 allows a remote attacker to execute arbitrary code via the id... |
| CVE-2023-6573 | MEDIUM | 5.5 | 0.2% | Jan 23, 2024 | HPE OneView may have a missing passphrase during restore. |
| CVE-2023-45889 | MEDIUM | 6.1 | 0.4% | Jan 23, 2024 | A Universal Cross Site Scripting (UXSS) vulnerability in ClassLink OneClick Extension through 10.8 allows remote attacke... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now