2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5188 | HIGH | 7.5 | 1.0% | Dec 5, 2023 | The MMS Interpreter of WagoAppRTU in versions below 1.4.6.0 which is used by the WAGO Telecontrol Configurator is vulner... |
| CVE-2023-49070 | CRITICAL | 9.8 | 95.4% | Dec 5, 2023 | Pre-auth RCE in Apache Ofbiz 18.12.09. It's due to XML-RPC no longer maintained still present. This issue affects Apach... |
| CVE-2023-43472 | HIGH | 7.5 | 36.6% | Dec 5, 2023 | An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted requ... |
| CVE-2023-44295 | HIGH | 8.1 | 0.4% | Dec 5, 2023 | Dell PowerScale OneFS versions 8.2.2.x through 9.6.0.x contains an improper control of a resource through its lifetime ... |
| CVE-2023-44288 | HIGH | 7.5 | 0.7% | Dec 5, 2023 | Dell PowerScale OneFS, 8.2.2.x through 9.6.0.x, contains an improper control of a resource through its lifetime vulnera... |
| CVE-2023-39248 | HIGH | 7.5 | 0.7% | Dec 5, 2023 | Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Servic... |
| CVE-2023-37572 | HIGH | 7.5 | 0.6% | Dec 5, 2023 | Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information... |
| CVE-2023-47304 | HIGH | 7.8 | 0.3% | Dec 5, 2023 | An issue was discovered in Vonage Box Telephone Adapter VDV23 version VDV21-3.2.11-0.5.1, allows local attackers to bypa... |
| CVE-2023-42581 | HIGH | 7.5 | 1.2% | Dec 5, 2023 | Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute ... |
| CVE-2023-42580 | CRITICAL | 9.8 | 1.0% | Dec 5, 2023 | Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute Ja... |
| CVE-2023-42579 | MEDIUM | 5.3 | 0.2% | Dec 5, 2023 | Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in An... |
| CVE-2023-42578 | HIGH | 7.5 | 0.7% | Dec 5, 2023 | Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.... |
| CVE-2023-42577 | LOW | 2.4 | 0.3% | Dec 5, 2023 | Improper Access Control in Samsung Voice Recorder prior to versions 21.4.15.01 in Android 12 and Android 13, 21.4.50.17 ... |
| CVE-2023-42576 | MEDIUM | 6.8 | 0.4% | Dec 5, 2023 | Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass aut... |
| CVE-2023-42575 | MEDIUM | 6.8 | 0.4% | Dec 5, 2023 | Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass aut... |
| CVE-2023-42574 | HIGH | 7.8 | 0.2% | Dec 5, 2023 | Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrar... |
| CVE-2023-42573 | MEDIUM | 5.5 | 0.2% | Dec 5, 2023 | PendingIntent hijacking vulnerability in Search Widget prior to version 3.4 in China models allows local attackers to ac... |
| CVE-2023-42572 | MEDIUM | 5.5 | 0.3% | Dec 5, 2023 | Implicit intent hijacking vulnerability in Samsung Account Web SDK prior to version 1.5.24 allows attacker to get sensit... |
| CVE-2023-42571 | MEDIUM | 6.8 | 0.3% | Dec 5, 2023 | Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotel... |
| CVE-2023-42570 | LOW | 3.3 | 0.2% | Dec 5, 2023 | Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to acc... |
| CVE-2023-42569 | LOW | 3.3 | 0.2% | Dec 5, 2023 | Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read s... |
| CVE-2023-42568 | MEDIUM | 4.4 | 0.2% | Dec 5, 2023 | Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access... |
| CVE-2023-42567 | HIGH | 7.8 | 0.3% | Dec 5, 2023 | Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow. |
| CVE-2023-42566 | HIGH | 7.8 | 0.3% | Dec 5, 2023 | Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrar... |
| CVE-2023-42565 | MEDIUM | 6.7 | 0.2% | Dec 5, 2023 | Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now