2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-5188HIGH7.5The MMS Interpreter of WagoAppRTU in versions below 1.4.6.0 which is used by the WAGO Telecontrol Configurator is vulner...
CVE-2023-49070CRITICAL9.8Pre-auth RCE in Apache Ofbiz 18.12.09. It's due to XML-RPC no longer maintained still present. This issue affects Apach...
CVE-2023-43472HIGH7.5An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted requ...
CVE-2023-44295HIGH8.1 Dell PowerScale OneFS versions 8.2.2.x through 9.6.0.x contains an improper control of a resource through its lifetime ...
CVE-2023-44288HIGH7.5 Dell PowerScale OneFS, 8.2.2.x through 9.6.0.x, contains an improper control of a resource through its lifetime vulnera...
CVE-2023-39248HIGH7.5 Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Servic...
CVE-2023-37572HIGH7.5Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information...
CVE-2023-47304HIGH7.8An issue was discovered in Vonage Box Telephone Adapter VDV23 version VDV21-3.2.11-0.5.1, allows local attackers to bypa...
CVE-2023-42581HIGH7.5Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute ...
CVE-2023-42580CRITICAL9.8Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute Ja...
CVE-2023-42579MEDIUM5.3Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in An...
CVE-2023-42578HIGH7.5Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00....
CVE-2023-42577LOW2.4Improper Access Control in Samsung Voice Recorder prior to versions 21.4.15.01 in Android 12 and Android 13, 21.4.50.17 ...
CVE-2023-42576MEDIUM6.8Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass aut...
CVE-2023-42575MEDIUM6.8Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass aut...
CVE-2023-42574HIGH7.8Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrar...
CVE-2023-42573MEDIUM5.5PendingIntent hijacking vulnerability in Search Widget prior to version 3.4 in China models allows local attackers to ac...
CVE-2023-42572MEDIUM5.5Implicit intent hijacking vulnerability in Samsung Account Web SDK prior to version 1.5.24 allows attacker to get sensit...
CVE-2023-42571MEDIUM6.8Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotel...
CVE-2023-42570LOW3.3Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to acc...
CVE-2023-42569LOW3.3Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read s...
CVE-2023-42568MEDIUM4.4Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access...
CVE-2023-42567HIGH7.8Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.
CVE-2023-42566HIGH7.8Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrar...
CVE-2023-42565MEDIUM6.7Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now