2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-22411HIGH7.5An Out-of-Bounds Write vulnerability in Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows an unauthenti...
CVE-2023-22408HIGH7.5An Improper Validation of Array Index vulnerability in the SIP ALG of Juniper Networks Junos OS on SRX 5000 Series allow...
CVE-2023-22403HIGH7.5 An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper ...
CVE-2023-22401HIGH7.5An Improper Validation of Array Index vulnerability in the Advanced Forwarding Toolkit Manager daemon (aftmand) of Junip...
CVE-2023-22400HIGH7.5An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos ...
CVE-2023-22399HIGH7.5When sFlow is enabled and it monitors a packet forwarded via ECMP, a buffer management vulnerability in the dcpfe proces...
CVE-2023-22396HIGH7.5An Uncontrolled Resource Consumption vulnerability in TCP processing on the Routing Engine (RE) of Juniper Networks Juno...
CVE-2023-22394HIGH7.5An Improper Handling of Unexpected Data Type vulnerability in the handling of SIP calls in Juniper Networks Junos OS on ...
CVE-2023-22393HIGH7.5An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of Juniper Networks Junos ...
CVE-2023-22391HIGH7.5A vulnerability in class-of-service (CoS) queue management in Juniper Networks Junos OS on the ACX2K Series devices allo...
CVE-2023-22601HIGH8.6 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-22600HIGH8.1 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-22598HIGH7.2 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-0247HIGH7.8Uncontrolled Search Path Element in GitHub repository bits-and-blooms/bloom prior to 3.3.1.
CVE-2023-22952HIGH8.8In SugarCRM before 12.0. Hotfix 91155, a crafted request can inject custom PHP code through the EmailTemplates because o...
CVE-2023-20531HIGH7.5Insufficient bound checks in the SMU may allow an attacker to update the SRAM from/to address space to an invalid value ...
CVE-2023-20530HIGH7.5Insufficient input validation of BIOS mailbox messages in SMU may result in out-of-bounds memory reads potentially resul...
CVE-2023-20529HIGH7.5Insufficient bound checks in the SMU may allow an attacker to update the from/to address space to an invalid value poten...
CVE-2023-20522HIGH7.5Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of servic...
CVE-2023-22959HIGH8.8WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstN...
CVE-2023-22947HIGH7.3Insecure folder permissions in the Windows installation path of Shibboleth Service Provider (SP) before 3.4.1 allow an u...
CVE-2023-21793HIGH7.83D Builder Remote Code Execution Vulnerability
CVE-2023-21792HIGH7.83D Builder Remote Code Execution Vulnerability
CVE-2023-21791HIGH7.83D Builder Remote Code Execution Vulnerability
CVE-2023-21790HIGH7.83D Builder Remote Code Execution Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now