2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-30243HIGH7.5Beijing Netcon NS-ASG Application Security Gateway v6.3 is vulnerable to SQL Injection via TunnelId that allows access t...
CVE-2023-28068HIGH7.8 Dell Command Monitor, versions 10.9 and prior, contains an improper folder permission vulnerability. A local authentica...
CVE-2023-32235HIGH7.5Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's folder via /assets/built%2...
CVE-2023-30282HIGH7.5PrestaShop scexportcustomers <= 3.6.1 is vulnerable to Incorrect Access Control. Due to a lack of permissions' control, ...
CVE-2023-31415HIGH8.8Kibana version 8.7.0 contains an arbitrary code execution flaw. An attacker with All privileges to the Uptime/Synthetics...
CVE-2023-31414HIGH8.8Kibana versions 8.0.0 through 8.7.0 contain an arbitrary code execution flaw. An attacker with write access to Kibana ya...
CVE-2023-30399HIGH8.1Insecure permissions in the settings page of GARO Wallbox GLB/GTB/GTC before v189 allows attackers to redirect users to ...
CVE-2023-25289HIGH7.5Directory Traversal vulnerability in virtualreception Digital Receptie version win7sp1_rtm.101119-1850 6.1.7601.1.0.6579...
CVE-2023-21509HIGH7.8Out-of-bounds Write vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain K...
CVE-2023-21508HIGH7.8Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA command in bc_tui trustlet from Samsung...
CVE-2023-21506HIGH7.8Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from S...
CVE-2023-21505HIGH8.6Improper access control in Samsung Core Service prior to version 2.1.00.36 allows attacker to write arbitrary file in sa...
CVE-2023-21502HIGH7.8Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attacker...
CVE-2023-21501HIGH7.8Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers ...
CVE-2023-21499HIGH7.8Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Releas...
CVE-2023-21498HIGH7.8Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows ...
CVE-2023-21497HIGH7.8Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows loc...
CVE-2023-21491HIGH7.8Improper access control vulnerability in ThemeManager prior to SMR May-2023 Release 1 allows local attackers to write ar...
CVE-2023-21490HIGH7.1Improper access control in GearManagerStub prior to SMR May-2023 Release 1 allows a local attacker to delete application...
CVE-2023-21488HIGH7.8Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrar...
CVE-2023-21484HIGH7.8Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper p...
CVE-2023-31284HIGH7.8illumos illumos-gate before 676abcb has a stack buffer overflow in /dev/net, leading to privilege escalation via a stat ...
CVE-2023-2522HIGH7.2A vulnerability was found in Chengdu VEC40G 3.0. It has been declared as critical. Affected by this vulnerability is an ...
CVE-2023-29996HIGH7.5In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and un...
CVE-2023-29995HIGH7.5In NanoMQ v0.15.0-0, a Heap overflow occurs in copyn_utf8_str function of mqtt_parser.c

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now