2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6820Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-6818Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-6770Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-6726Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-5361Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-50786MEDIUM4.3Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded ...
CVE-2023-47310MEDIUM6.5A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute...
CVE-2023-29113MEDIUM6.3The MIB3 infotainment unit used in Skoda and Volkswagen vehicles does not incorporate any privilege separation for the p...
CVE-2023-28912MEDIUM5.7The MIB3 unit stores the synchronized phone contact book in clear-text, allowing an attacker with either code execution ...
CVE-2023-28911MEDIUM6.5A specific flaw exists within the Bluetooth stack of the MIB3 infotainment. The issue results from the lack of proper va...
CVE-2023-28910HIGH8A specific flaw exists within the Bluetooth stack of the MIB3 infotainment system. The issue results from the disabled a...
CVE-2023-28909HIGH8A specific flaw exists within the Bluetooth stack of the MIB3 unit. The issue results from the lack of proper validation...
CVE-2023-28908MEDIUM5.4A specific flaw exists within the Bluetooth stack of the MIB3 infotainment. The issue results from the lack of proper va...
CVE-2023-28907MEDIUM6.7There is no memory isolation between CPU cores of the MIB3 infotainment. This fact allows an attacker with access to the...
CVE-2023-28906HIGH7.8A command injection in the networking service of the MIB3 infotainment allows an attacker already presenting in the syst...
CVE-2023-28905HIGH8A heap buffer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker to execute arbitr...
CVE-2023-28904MEDIUM5.2A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attack...
CVE-2023-28903LOW3.3An integer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access to...
CVE-2023-28902LOW3.3An integer underflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access t...
CVE-2023-38007MEDIUM5.4IBM Cloud Pak System 2.3.5.0, 2.3.3.7, 2.3.3.7 iFix1 on Power and 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.4.0, 2.3.4....
CVE-2023-25998HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2023-44915HIGH7.1A cross-site scripting (XSS) vulnerability in the component /Login.php of c3crm up to v3.0.4 allows attackers to execute...
CVE-2023-47030CRITICAL9.8An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive informa...
CVE-2023-47029CRITICAL9.8An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive informa...
CVE-2023-47031CRITICAL9.8An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to escalate privileges via a crafted POST request to t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now