2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27875 | HIGH | 7.5 | 0.6% | Mar 16, 2023 | IBM Aspera Faspex 5.0.4 could allow a user to change other user's credentials due to improper access controls. IBM X-Fo... |
| CVE-2023-1433 | HIGH | 7.2 | 0.9% | Mar 16, 2023 | A vulnerability was found in SourceCodester Gadget Works Online Ordering System 1.0. It has been classified as problemat... |
| CVE-2023-24671 | HIGH | 7.8 | 0.4% | Mar 16, 2023 | VX Search v13.8 and v14.7 was discovered to contain an unquoted service path vulnerability which allows attackers to exe... |
| CVE-2023-24760 | HIGH | 8.8 | 0.8% | Mar 16, 2023 | An issue found in Ofcms v.1.1.4 allows a remote attacker to to escalate privileges via the respwd method in SysUserContr... |
| CVE-2023-25281 | HIGH | 7.5 | 1.1% | Mar 16, 2023 | A stack overflow vulnerability exists in pingV4Msg component in D-Link DIR820LA1_FW105B03, allows attackers to cause a d... |
| CVE-2023-28466 | HIGH | 7 | 0.3% | Mar 16, 2023 | do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race cond... |
| CVE-2023-28460 | HIGH | 7.2 | 1.6% | Mar 15, 2023 | A command injection vulnerability was discovered in Array Networks APV products. A remote attacker can send a crafted pa... |
| CVE-2023-28338 | HIGH | 7.5 | 0.6% | Mar 15, 2023 | Any request send to a Netgear Nighthawk Wifi6 Router (RAX30)'s web service containing a “Content-Type” of “multipartboun... |
| CVE-2023-28337 | HIGH | 8.8 | 0.7% | Mar 15, 2023 | When uploading a firmware image to a Netgear Nighthawk Wifi6 Router (RAX30), a hidden “forceFWUpdate” parameter may be p... |
| CVE-2023-28099 | HIGH | 7.5 | 0.9% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.9 and 3.2.6, if `ds_is_in_l... |
| CVE-2023-28098 | HIGH | 7.5 | 0.9% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, a specially cr... |
| CVE-2023-28097 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.9 and 3.2.6, a malformed SI... |
| CVE-2023-1389 | HIGH | 8.8 | 100.0% | Mar 15, 2023 | TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability i... |
| CVE-2023-28096 | HIGH | 7.5 | 0.8% | Mar 15, 2023 | OpenSIPS, a Session Initiation Protocol (SIP) server implementation, has a memory leak starting in the 2.3 branch and pr... |
| CVE-2023-28095 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.1.7 and 3.2.4 have a potentia... |
| CVE-2023-27601 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, OpenSIPS crash... |
| CVE-2023-27600 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, OpenSIPS crash... |
| CVE-2023-25267 | HIGH | 8.8 | 1.0% | Mar 15, 2023 | An issue was discovered in GFI Kerio Connect 9.4.1 patch 1 (fixed in 10.0.0). There is a stack-based Buffer Overflow in ... |
| CVE-2023-28450 | HIGH | 7.5 | 1.3% | Mar 15, 2023 | An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be... |
| CVE-2023-27599 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, when the funct... |
| CVE-2023-27598 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, sending a malf... |
| CVE-2023-27597 | HIGH | 7.5 | 0.7% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.8 and 3.2.5, when a special... |
| CVE-2023-27596 | HIGH | 7.5 | 0.7% | Mar 15, 2023 | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.8 and 3.2.5, OpenSIPS crash... |
| CVE-2023-26484 | HIGH | 8.2 | 0.6% | Mar 15, 2023 | KubeVirt is a virtual machine management add-on for Kubernetes. In versions 0.59.0 and prior, if a malicious user has ta... |
| CVE-2023-25345 | HIGH | 7.5 | 1.0% | Mar 15, 2023 | Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary f... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now