2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-42543HIGH7.5Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows att...
CVE-2023-42542LOW3.3Improper access control vulnerability in Samsung Push Service prior to 3.4.10 allows local attackers to get register ID ...
CVE-2023-42541MEDIUM5.3Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access u...
CVE-2023-42540MEDIUM5.5Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive...
CVE-2023-42539MEDIUM5.5PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows loc...
CVE-2023-42538HIGH7.8An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to ...
CVE-2023-42537HIGH7.8An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause...
CVE-2023-42536HIGH7.8An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause ou...
CVE-2023-42535HIGH7.8Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary cod...
CVE-2023-42534MEDIUM5.5Improper input validation vulnerability in ChooserActivity prior to SMR Nov-2023 Release 1 allows local attackers to rea...
CVE-2023-42533MEDIUM6.8Improper Input Validation with USB Gadget Interface prior to SMR Nov-2023 Release 1 allows a physical attacker to execut...
CVE-2023-42532HIGH7.5Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the netw...
CVE-2023-42531HIGH7.1Improper access control vulnerability in SmsController prior to SMR Nov-2023 Release1 allows local attackers to bypass r...
CVE-2023-42530HIGH7.5Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi an...
CVE-2023-42529HIGH7.8Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitra...
CVE-2023-42528HIGH7.8Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local...
CVE-2023-42527MEDIUM5.5Improper input validation vulnerability in ProcessWriteFile of libsec-ril prior to SMR Nov-2023 Release 1 allows local a...
CVE-2023-42284CRITICAL9.8Blind SQL injection in api_version parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the databas...
CVE-2023-42283CRITICAL9.8Blind SQL injection in api_id parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via...
CVE-2023-30739HIGH7.8Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to exe...
CVE-2023-41723MEDIUM4.3A vulnerability in Veeam ONE allows a user with the Veeam ONE Read-Only User role to view the Dashboard Schedule. Note: ...
CVE-2023-38549MEDIUM5.4A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acqui...
CVE-2023-38548MEDIUM4.3A vulnerability in Veeam ONE allows an unprivileged user who has access to the Veeam ONE Web Client the ability to acqui...
CVE-2023-38547CRITICAL9.8A vulnerability in Veeam ONE allows an unauthenticated user to gain information about the SQL server connection Veeam ON...
CVE-2023-47102MEDIUM5.3UrBackup Server 2.5.31 allows brute-force enumeration of user accounts because a failure message confirms that a usernam...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now