2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42543 | HIGH | 7.5 | 0.5% | Nov 7, 2023 | Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows att... |
| CVE-2023-42542 | LOW | 3.3 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in Samsung Push Service prior to 3.4.10 allows local attackers to get register ID ... |
| CVE-2023-42541 | MEDIUM | 5.3 | 0.4% | Nov 7, 2023 | Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access u... |
| CVE-2023-42540 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive... |
| CVE-2023-42539 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows loc... |
| CVE-2023-42538 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to ... |
| CVE-2023-42537 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause... |
| CVE-2023-42536 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause ou... |
| CVE-2023-42535 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary cod... |
| CVE-2023-42534 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper input validation vulnerability in ChooserActivity prior to SMR Nov-2023 Release 1 allows local attackers to rea... |
| CVE-2023-42533 | MEDIUM | 6.8 | 0.4% | Nov 7, 2023 | Improper Input Validation with USB Gadget Interface prior to SMR Nov-2023 Release 1 allows a physical attacker to execut... |
| CVE-2023-42532 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the netw... |
| CVE-2023-42531 | HIGH | 7.1 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in SmsController prior to SMR Nov-2023 Release1 allows local attackers to bypass r... |
| CVE-2023-42530 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi an... |
| CVE-2023-42529 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitra... |
| CVE-2023-42528 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local... |
| CVE-2023-42527 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper input validation vulnerability in ProcessWriteFile of libsec-ril prior to SMR Nov-2023 Release 1 allows local a... |
| CVE-2023-42284 | CRITICAL | 9.8 | 1.2% | Nov 7, 2023 | Blind SQL injection in api_version parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the databas... |
| CVE-2023-42283 | CRITICAL | 9.8 | 1.3% | Nov 7, 2023 | Blind SQL injection in api_id parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via... |
| CVE-2023-30739 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to exe... |
| CVE-2023-41723 | MEDIUM | 4.3 | 12.3% | Nov 7, 2023 | A vulnerability in Veeam ONE allows a user with the Veeam ONE Read-Only User role to view the Dashboard Schedule. Note: ... |
| CVE-2023-38549 | MEDIUM | 5.4 | 19.1% | Nov 7, 2023 | A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acqui... |
| CVE-2023-38548 | MEDIUM | 4.3 | 11.8% | Nov 7, 2023 | A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acqui... |
| CVE-2023-38547 | CRITICAL | 9.8 | 18.9% | Nov 7, 2023 | A vulnerability in Veeam ONE allows an unauthenticated user to gain information about the SQL server connection Veeam ON... |
| CVE-2023-47102 | MEDIUM | 5.3 | 0.6% | Nov 7, 2023 | UrBackup Server 2.5.31 allows brute-force enumeration of user accounts because a failure message confirms that a usernam... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now