2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23907 | HIGH | 7.5 | 1.1% | Jul 6, 2023 | A directory traversal vulnerability exists in the server.js start functionality of Milesight VPN v2.0.2. A specially-cra... |
| CVE-2023-23571 | HIGH | 7.5 | 0.9% | Jul 6, 2023 | An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafte... |
| CVE-2023-23550 | HIGH | 7.2 | 3.5% | Jul 6, 2023 | An OS command injection vulnerability exists in the ys_thirdparty user_delete functionality of Milesight UR32L v32.3.0.5... |
| CVE-2023-23546 | HIGH | 8.1 | 0.5% | Jul 6, 2023 | A misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-craf... |
| CVE-2023-22659 | HIGH | 7.2 | 3.6% | Jul 6, 2023 | An os command injection vulnerability exists in the libzebra.so change_hostname functionality of Milesight UR32L v32.3.0... |
| CVE-2023-22653 | HIGH | 8.8 | 6.8% | Jul 6, 2023 | An OS command injection vulnerability exists in the vtysh_ubus tcpdump_start_cb functionality of Milesight UR32L v32.3.0... |
| CVE-2023-22371 | HIGH | 8.1 | 3.3% | Jul 6, 2023 | An os command injection vulnerability exists in the liburvpn.so create_private_key functionality of Milesight VPN v2.0.2... |
| CVE-2023-22365 | HIGH | 7.2 | 2.1% | Jul 6, 2023 | An OS command injection vulnerability exists in the ys_thirdparty check_system_user functionality of Milesight UR32L v32... |
| CVE-2023-22306 | HIGH | 7.2 | 3.4% | Jul 6, 2023 | An OS command injection vulnerability exists in the libzebra.so bridge_group functionality of Milesight UR32L v32.3.0.5.... |
| CVE-2023-22299 | HIGH | 8.8 | 3.5% | Jul 6, 2023 | An OS command injection vulnerability exists in the vtysh_ubus _get_fw_logs functionality of Milesight UR32L v32.3.0.5. ... |
| CVE-2023-36968 | HIGH | 7.2 | 0.7% | Jul 6, 2023 | A SQL Injection vulnerability detected in Food Ordering System v1.0 allows attackers to run commands on the database by ... |
| CVE-2023-36189 | HIGH | 7.5 | 0.9% | Jul 6, 2023 | SQL injection vulnerability in langchain before v0.0.247 allows a remote attacker to obtain sensitive information via th... |
| CVE-2023-35937 | HIGH | 8.8 | 0.6% | Jul 6, 2023 | Metersphere is an open source continuous testing platform. In versions prior to 2.10.2 LTS, some key APIs in Metersphere... |
| CVE-2023-37241 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Input verification vulnerability in the WMS API. Successful exploitation of this vulnerability may cause the device to r... |
| CVE-2023-37239 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Format string vulnerability in the distributed file system. Attackers who bypass the selinux permission can exploit thi... |
| CVE-2023-34164 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation ... |
| CVE-2023-1695 | HIGH | 7.5 | 0.3% | Jul 6, 2023 | Vulnerability of failures to capture exceptions in the communication framework. Successful exploitation of this vulnerab... |
| CVE-2023-1691 | HIGH | 7.5 | 0.3% | Jul 6, 2023 | Vulnerability of failures to capture exceptions in the communication framework. Successful exploitation of this vulnerab... |
| CVE-2023-3523 | HIGH | 7.1 | 0.3% | Jul 6, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-30670 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacke... |
| CVE-2023-30669 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local atta... |
| CVE-2023-30668 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker... |
| CVE-2023-30666 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows lo... |
| CVE-2023-30664 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in RegisteredMSISDN prior to SMR Jul-2023 Release 1 allows local attackers to la... |
| CVE-2023-30663 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in OemPersonalizationSetLock in libsec-ril prior to SMR Jul-2023 Release 1 allow... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now