2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22639 | HIGH | 7.8 | 0.2% | Jun 13, 2023 | A out-of-bounds write in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.10, FortiOS ver... |
| CVE-2023-22633 | HIGH | 7.5 | 0.7% | Jun 13, 2023 | An improper permissions, privileges, and access controls vulnerability [CWE-264] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and... |
| CVE-2023-2729 | HIGH | 7.5 | 0.9% | Jun 13, 2023 | Use of insufficiently random values vulnerability in User Management Functionality in Synology DiskStation Manager (DSM)... |
| CVE-2023-0142 | HIGH | 8.1 | 0.9% | Jun 13, 2023 | Uncontrolled search path element vulnerability in Backup Management functionality in Synology DiskStation Manager (DSM) ... |
| CVE-2023-33991 | HIGH | 8.2 | 0.5% | Jun 13, 2023 | SAP UI5 Variant Management - versions SAP_UI 750, SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757, UI_700 200, does not s... |
| CVE-2023-26298 | HIGH | 8.8 | 1.6% | Jun 12, 2023 | Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation... |
| CVE-2023-26297 | HIGH | 8.8 | 1.6% | Jun 12, 2023 | Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation... |
| CVE-2023-26296 | HIGH | 8.8 | 1.6% | Jun 12, 2023 | Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation... |
| CVE-2023-26294 | HIGH | 7.8 | 0.7% | Jun 12, 2023 | Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation... |
| CVE-2023-32221 | HIGH | 7.8 | 0.2% | Jun 12, 2023 | EaseUS Todo Backup version 20220111.390 - An omission during installation may allow a local attacker to perform privileg... |
| CVE-2023-32219 | HIGH | 7.5 | 0.5% | Jun 12, 2023 | A Mazda model (2015-2016) can be unlocked via an unspecified method. |
| CVE-2023-34942 | HIGH | 7.5 | 0.7% | Jun 12, 2023 | Asus RT-N10LX Router v2.0.0.39 was discovered to contain a stack overflow via the mac parameter at /start-apply.html. NO... |
| CVE-2023-34940 | HIGH | 7.5 | 0.8% | Jun 12, 2023 | Asus RT-N10LX Router v2.0.0.39 was discovered to contain a stack overflow via the url parameter at /start-apply.html. NO... |
| CVE-2023-28478 | HIGH | 8.8 | 0.3% | Jun 12, 2023 | TP-Link EC-70 devices through 2.3.4 Build 20220902 rel.69498 have a Buffer Overflow. |
| CVE-2023-1899 | HIGH | 7.5 | 0.3% | Jun 12, 2023 | Atlas Copco Power Focus 6000 web server is not a secure connection by default, which could allow an attacker to gain sen... |
| CVE-2023-1898 | HIGH | 7.5 | 0.6% | Jun 12, 2023 | Atlas Copco Power Focus 6000 web server uses a small amount of session ID numbers. An attacker could enter a session ID ... |
| CVE-2023-1897 | HIGH | 7.5 | 0.3% | Jun 12, 2023 | Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s brows... |
| CVE-2023-34343 | HIGH | 8.8 | 0.8% | Jun 12, 2023 | AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrar... |
| CVE-2023-34336 | HIGH | 8.8 | 0.7% | Jun 12, 2023 | AMI BMC contains a vulnerability in the IPMI handler, where an attacker with the required privileges can cause a buffer ... |
| CVE-2023-34334 | HIGH | 8.8 | 0.8% | Jun 12, 2023 | AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrar... |
| CVE-2023-34341 | HIGH | 8.8 | 0.8% | Jun 12, 2023 | AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can read and write ... |
| CVE-2023-34105 | HIGH | 7.5 | 8.8% | Jun 12, 2023 | SRS is a real-time video server supporting RTMP, WebRTC, HLS, HTTP-FLV, SRT, MPEG-DASH, and GB28181. Prior to versions 5... |
| CVE-2023-30198 | HIGH | 7.5 | 5.5% | Jun 12, 2023 | Prestashop winbizpayment <= 1.0.2 is vulnerable to Incorrect Access Control via modules/winbizpayment/downloads/download... |
| CVE-2023-35053 | HIGH | 7.5 | 0.6% | Jun 12, 2023 | In JetBrains YouTrack before 2023.1.10518 a DoS attack was possible via Helpdesk forms |
| CVE-2023-34468 | HIGH | 8.8 | 63.4% | Jun 12, 2023 | The DBCPConnectionPool and HikariCPConnectionPool Controller Services in Apache NiFi 0.0.2 through 1.21.0 allow an authe... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now