2023 CVE Vulnerabilities
31,402 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35193 | HIGH | 8.8 | 5.6% | Oct 11, 2023 | An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v... |
| CVE-2023-35056 | CRITICAL | 9.8 | 1.0% | Oct 11, 2023 | A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr... |
| CVE-2023-35055 | CRITICAL | 9.8 | 1.0% | Oct 11, 2023 | A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr... |
| CVE-2023-34426 | CRITICAL | 9.8 | 0.8% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd manage_request functionality of Yifan YF325 v1.0_2022110... |
| CVE-2023-34365 | CRITICAL | 9.8 | 0.8% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the libutils.so nvram_restore functionality of Yifan YF325 v1.0_20... |
| CVE-2023-34356 | HIGH | 8.8 | 5.5% | Oct 11, 2023 | An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in ... |
| CVE-2023-34354 | MEDIUM | 5.4 | 0.8% | Oct 11, 2023 | A stored cross-site scripting (XSS) vulnerability exists in the upload_brand.cgi functionality of peplink Surf SOHO HW1 ... |
| CVE-2023-34346 | CRITICAL | 9.8 | 1.3% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108... |
| CVE-2023-32645 | CRITICAL | 9.8 | 53.5% | Oct 11, 2023 | A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108. A ... |
| CVE-2023-32632 | CRITICAL | 9.8 | 1.2% | Oct 11, 2023 | A command execution vulnerability exists in the validate.so diag_ping_start functionality of Yifan YF325 v1.0_20221108. ... |
| CVE-2023-31272 | CRITICAL | 9.8 | 0.6% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan YF325 v1.0_20221108. A spe... |
| CVE-2023-28381 | HIGH | 8.8 | 5.9% | Oct 11, 2023 | An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6.... |
| CVE-2023-27380 | HIGH | 8.8 | 5.7% | Oct 11, 2023 | An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (i... |
| CVE-2023-24479 | CRITICAL | 9.8 | 1.7% | Oct 11, 2023 | An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A speci... |
| CVE-2023-4957 | MEDIUM | 4.3 | 0.3% | Oct 11, 2023 | A vulnerability of authentication bypass has been found on a Zebra Technologies ZTC ZT410-203dpi ZPL printer. This vulne... |
| CVE-2023-45396 | MEDIUM | 6.5 | 0.4% | Oct 11, 2023 | An Insecure Direct Object Reference (IDOR) vulnerability leads to events profiles access in Elenos ETG150 FM transmitter... |
| CVE-2023-44119 | HIGH | 7.5 | 0.3% | Oct 11, 2023 | Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will aff... |
| CVE-2023-44118 | CRITICAL | 9.1 | 0.4% | Oct 11, 2023 | Vulnerability of undefined permissions in the MeeTime module.Successful exploitation of this vulnerability will affect a... |
| CVE-2023-44116 | CRITICAL | 9.8 | 0.4% | Oct 11, 2023 | Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this ... |
| CVE-2023-44114 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service... |
| CVE-2023-44108 | HIGH | 7.5 | 0.4% | Oct 11, 2023 | Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the ... |
| CVE-2023-44107 | CRITICAL | 9.1 | 0.4% | Oct 11, 2023 | Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of th... |
| CVE-2023-44105 | CRITICAL | 9.8 | 0.4% | Oct 11, 2023 | Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this... |
| CVE-2023-37538 | MEDIUM | 6.1 | 0.4% | Oct 11, 2023 | HCL Digital Experience is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In... |
| CVE-2023-5521 | CRITICAL | 9.8 | 0.6% | Oct 11, 2023 | Incorrect Authorization in GitHub repository tiann/kernelsu prior to v0.6.9. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now