2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22292 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable escalation of pr... |
| CVE-2023-22290 | MEDIUM | 6.5 | 0.7% | Nov 14, 2023 | Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable denial of servic... |
| CVE-2023-22285 | HIGH | 7.5 | 0.7% | Nov 14, 2023 | Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of... |
| CVE-2023-20596 | CRITICAL | 9.8 | 1.0% | Nov 14, 2023 | Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 acces... |
| CVE-2023-20592 | MEDIUM | 6.5 | 1.0% | Nov 14, 2023 | Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervis... |
| CVE-2023-20571 | HIGH | 8.1 | 0.4% | Nov 14, 2023 | A race condition in System Management Mode (SMM) code may allow an attacker using a compromised user space to leverage C... |
| CVE-2023-20568 | MEDIUM | 6.7 | 0.2% | Nov 14, 2023 | Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privi... |
| CVE-2023-20567 | MEDIUM | 6.7 | 0.2% | Nov 14, 2023 | Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privi... |
| CVE-2023-20566 | HIGH | 7.5 | 0.4% | Nov 14, 2023 | Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integri... |
| CVE-2023-20565 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of ... |
| CVE-2023-20563 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of ... |
| CVE-2023-20533 | HIGH | 7.5 | 0.5% | Nov 14, 2023 | Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an inva... |
| CVE-2023-20526 | MEDIUM | 4.6 | 0.3% | Nov 14, 2023 | Insufficient input validation in the ASP Bootloader may enable a privileged attacker with physical access to expose the ... |
| CVE-2023-20521 | MEDIUM | 5.7 | 0.3% | Nov 14, 2023 | TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory cont... |
| CVE-2023-20519 | LOW | 3.3 | 0.2% | Nov 14, 2023 | A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masque... |
| CVE-2023-45585 | LOW | 3.3 | 0.2% | Nov 14, 2023 | An insertion of sensitive information into log file vulnerability [CWE-532] in FortiSIEM version 7.0.0, version 6.7.6 an... |
| CVE-2023-45582 | HIGH | 7.3 | 0.5% | Nov 14, 2023 | An improper restriction of excessive authentication attempts vulnerability [CWE-307] in FortiMail webmail version 7.2.0 ... |
| CVE-2023-44248 | MEDIUM | 5.5 | 0.2% | Nov 14, 2023 | An improper access control vulnerability [CWE-284] in FortiEDRCollectorWindows version 5.2.0.4549 and below, 5.0.3.1007 ... |
| CVE-2023-42783 | HIGH | 7.5 | 0.9% | Nov 14, 2023 | A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 and 8.4.2 through 8.4... |
| CVE-2023-41840 | HIGH | 7.8 | 0.3% | Nov 14, 2023 | A untrusted search path vulnerability in Fortinet FortiClientWindows 7.0.9 allows an attacker to perform a DLL Hijack at... |
| CVE-2023-41676 | MEDIUM | 6.5 | 0.4% | Nov 14, 2023 | An exposure of sensitive information to an unauthorized actor [CWE-200] in FortiSIEM version 7.0.0 and before 6.7.5 may... |
| CVE-2023-38177 | MEDIUM | 6.8 | 3.4% | Nov 14, 2023 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2023-38151 | HIGH | 8.8 | 1.8% | Nov 14, 2023 | Microsoft Host Integration Server 2020 Remote Code Execution Vulnerability |
| CVE-2023-36719 | HIGH | 7.8 | 0.6% | Nov 14, 2023 | Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability |
| CVE-2023-36705 | HIGH | 7.8 | 0.7% | Nov 14, 2023 | Windows Installer Elevation of Privilege Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now