2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23347 | HIGH | 7.1 | 0.1% | Aug 9, 2023 | HCL DRYiCE iAutomate is affected by the use of a broken cryptographic algorithm. An attacker can potentially compromise... |
| CVE-2023-39005 | HIGH | 7.5 | 0.6% | Aug 9, 2023 | Insecure permissions exist for configd.socket in OPNsense Community Edition before 23.7 and Business Edition before 23.4... |
| CVE-2023-39003 | HIGH | 7.5 | 0.7% | Aug 9, 2023 | OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 was discovered to contain insecure permissions... |
| CVE-2023-38997 | HIGH | 7.2 | 1.1% | Aug 9, 2023 | A directory traversal vulnerability in the Captive Portal templates of OPNsense Community Edition before 23.7 and Busine... |
| CVE-2023-23346 | HIGH | 7.1 | 0.1% | Aug 9, 2023 | HCL DRYiCE MyCloud is affected by the use of a broken cryptographic algorithm. An attacker can potentially compromise t... |
| CVE-2023-40012 | HIGH | 7.5 | 0.2% | Aug 9, 2023 | uthenticode is a small cross-platform library for partially verifying Authenticode digital signatures. Versions of uthen... |
| CVE-2023-3518 | HIGH | 7.3 | 0.4% | Aug 9, 2023 | HashiCorp Consul and Consul Enterprise 1.16.0 when using JWT Auth for service mesh incorrectly allows/denies access rega... |
| CVE-2023-33953 | HIGH | 7.5 | 0.4% | Aug 9, 2023 | gRPC contains a vulnerability that allows hpack table accounting errors could lead to unwanted disconnects between clien... |
| CVE-2023-32782 | HIGH | 7.2 | 52.1% | Aug 9, 2023 | A command injection was identified in PRTG 23.2.84.1566 and earlier versions in the Dicom C-ECHO sensor where an authent... |
| CVE-2023-32781 | HIGH | 7.2 | 12.3% | Aug 9, 2023 | A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an au... |
| CVE-2023-31452 | HIGH | 8.8 | 0.5% | Aug 9, 2023 | A cross-site request forgery (CSRF) token bypass was identified in PRTG 23.2.84.1566 and earlier versions that allows re... |
| CVE-2023-38212 | HIGH | 7.8 | 0.3% | Aug 9, 2023 | Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary c... |
| CVE-2023-38211 | HIGH | 7.8 | 0.3% | Aug 9, 2023 | Adobe Dimension version 3.4.9 is affected by a Use After Free vulnerability that could result in arbitrary code executio... |
| CVE-2023-23574 | HIGH | 8.8 | 0.5% | Aug 9, 2023 | A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the alerts_... |
| CVE-2023-38208 | HIGH | 7.2 | 2.3% | Aug 9, 2023 | Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Imp... |
| CVE-2023-38207 | HIGH | 7.5 | 0.8% | Aug 9, 2023 | Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by a XML ... |
| CVE-2023-24477 | HIGH | 7 | 0.1% | Aug 9, 2023 | In certain conditions, depending on timing and the usage of the Chrome web browser, Guardian/CMC versions before 22.6.2 ... |
| CVE-2023-37864 | HIGH | 7.2 | 0.3% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges... |
| CVE-2023-37863 | HIGH | 7.2 | 0.7% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges... |
| CVE-2023-37862 | HIGH | 8.2 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access ... |
| CVE-2023-37861 | HIGH | 8.8 | 0.9% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated remote attacker can execute c... |
| CVE-2023-37860 | HIGH | 7.5 | 0.6% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain t... |
| CVE-2023-37859 | HIGH | 7.2 | 0.6% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privilege... |
| CVE-2023-37857 | HIGH | 7.2 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p... |
| CVE-2023-2905 | HIGH | 8.8 | 1.0% | Aug 9, 2023 | Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, C... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now