2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43819 | HIGH | 7.8 | 1.0% | Jan 18, 2024 | A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the InitialMa... |
| CVE-2023-43818 | HIGH | 7.8 | 1.0% | Jan 18, 2024 | A buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft. A remote, unauthenticated attacker ca... |
| CVE-2023-43817 | HIGH | 7.8 | 0.5% | Jan 18, 2024 | A buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing the wMailConten... |
| CVE-2023-43816 | HIGH | 7.8 | 0.4% | Jan 18, 2024 | A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing t... |
| CVE-2023-43815 | HIGH | 7.8 | 0.5% | Jan 18, 2024 | A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing t... |
| CVE-2023-51258 | MEDIUM | 5.5 | 0.3% | Jan 18, 2024 | A memory leak issue discovered in YASM v.1.3.0 allows a local attacker to cause a denial of service via the new_Token fu... |
| CVE-2023-51217 | HIGH | 8.8 | 1.2% | Jan 18, 2024 | An issue discovered in TenghuTOS TWS-200 firmware version:V4.0-201809201424 allows a remote attacker to execute arbitrar... |
| CVE-2023-47092 | — | — | — | Jan 18, 2024 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2023-49943 | MEDIUM | 5.4 | 1.8% | Jan 18, 2024 | Zoho ManageEngine ServiceDesk Plus MSP before 14504 allows stored XSS (by a low-privileged technician) via a task's name... |
| CVE-2023-34348 | HIGH | 7.5 | 0.6% | Jan 18, 2024 | AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated us... |
| CVE-2023-31274 | MEDIUM | 5.3 | 0.5% | Jan 18, 2024 | AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated us... |
| CVE-2023-28901 | MEDIUM | 5.3 | 0.5% | Jan 18, 2024 | The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing remote attackers to obtain recent tr... |
| CVE-2023-28900 | MEDIUM | 5.3 | 0.4% | Jan 18, 2024 | The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing to obtain nicknames and other user i... |
| CVE-2023-7153 | MEDIUM | 6.1 | 0.3% | Jan 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Macroturk Software... |
| CVE-2023-40052 | HIGH | 7.5 | 0.6% | Jan 18, 2024 | This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12... |
| CVE-2023-40051 | CRITICAL | 9.9 | 0.6% | Jan 18, 2024 | This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12.2.... |
| CVE-2023-5806 | CRITICAL | 9.8 | 0.5% | Jan 18, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mergen Software Qu... |
| CVE-2023-51464 | MEDIUM | 5.4 | 0.4% | Jan 18, 2024 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2023-51463 | MEDIUM | 5.4 | 0.4% | Jan 18, 2024 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2023-6970 | MEDIUM | 6.1 | 0.7% | Jan 18, 2024 | The WP Recipe Maker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘Referer' header in all... |
| CVE-2023-6958 | MEDIUM | 5.4 | 0.3% | Jan 18, 2024 | The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in a... |
| CVE-2023-6816 | CRITICAL | 9.8 | 2.1% | Jan 18, 2024 | A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical butt... |
| CVE-2023-48359 | MEDIUM | 4.4 | 0.1% | Jan 18, 2024 | In autotest driver, there is a possible out of bounds write due to improper input validation. This could lead to local d... |
| CVE-2023-48358 | MEDIUM | 4.4 | 0.1% | Jan 18, 2024 | In drm driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of... |
| CVE-2023-48357 | MEDIUM | 4.4 | 0.1% | Jan 18, 2024 | In vsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now