2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40850 | HIGH | 7.5 | 0.7% | Sep 13, 2023 | netentsec NS-ASG 6.3 is vulnerable to Incorrect Access Control. There is a file leak in the website source code of the a... |
| CVE-2023-42469 | LOW | 3.3 | 0.3% | Sep 13, 2023 | The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with n... |
| CVE-2023-3588 | MEDIUM | 5.4 | 0.3% | Sep 13, 2023 | A stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic ... |
| CVE-2023-4785 | HIGH | 7.5 | 0.7% | Sep 13, 2023 | Lack of error handling in the TCP server in Google's gRPC starting version 1.23 on posix-compatible platforms (ex. Linux... |
| CVE-2023-4155 | MEDIUM | 5.6 | 0.2% | Sep 13, 2023 | A flaw was found in KVM AMD Secure Encrypted Virtualization (SEV) in the Linux kernel. A KVM guest using SEV-ES or SEV-S... |
| CVE-2023-3301 | MEDIUM | 5.6 | 0.3% | Sep 13, 2023 | A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared... |
| CVE-2023-3280 | MEDIUM | 5.5 | 0.3% | Sep 13, 2023 | A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user ... |
| CVE-2023-3255 | MEDIUM | 6.5 | 1.4% | Sep 13, 2023 | A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lea... |
| CVE-2023-2680 | HIGH | 8.2 | 0.2% | Sep 13, 2023 | This CVE exists because of an incomplete fix for CVE-2021-3750. More specifically, the qemu-kvm package as released for ... |
| CVE-2023-20236 | HIGH | 7.8 | 0.1% | Sep 13, 2023 | A vulnerability in the iPXE boot function of Cisco IOS XR software could allow an authenticated, local attacker to insta... |
| CVE-2023-20233 | MEDIUM | 6.5 | 0.3% | Sep 13, 2023 | A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticat... |
| CVE-2023-20191 | HIGH | 7.5 | 0.5% | Sep 13, 2023 | A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR ... |
| CVE-2023-20190 | MEDIUM | 5.3 | 0.5% | Sep 13, 2023 | A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an una... |
| CVE-2023-20135 | HIGH | 7 | 0.1% | Sep 13, 2023 | A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execu... |
| CVE-2023-4828 | MEDIUM | 4.2 | 0.3% | Sep 13, 2023 | An improper check for an exceptional condition in the Insider Threat Management (ITM) Server could be used by an attacke... |
| CVE-2023-4803 | MEDIUM | 4.8 | 0.3% | Sep 13, 2023 | A reflected cross-site scripting vulnerability in the WriteWindowTitle endpoint of the Insider Threat Management (ITM) S... |
| CVE-2023-4802 | MEDIUM | 4.8 | 0.3% | Sep 13, 2023 | A reflected cross-site scripting vulnerability in the UpdateInstalledSoftware endpoint of the Insider Threat Management ... |
| CVE-2023-4801 | HIGH | 7.5 | 0.2% | Sep 13, 2023 | An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used ... |
| CVE-2023-39916 | MEDIUM | 6.5 | 0.5% | Sep 13, 2023 | NLnet Labs’ Routinator 0.9.0 up to and including 0.12.1 as well as 0.14.0 up to and including 0.14.2 contains a possible... |
| CVE-2023-39915 | HIGH | 7.5 | 0.5% | Sep 13, 2023 | NLnet Labs' Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects.... |
| CVE-2023-39914 | HIGH | 7.5 | 0.6% | Sep 13, 2023 | NLnet Labs' bcder library up to and including version 0.7.2 panics while decoding certain invalid input data rather than... |
| CVE-2023-4701 | — | — | — | Sep 13, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as the vendor eventually stat... |
| CVE-2023-3935 | CRITICAL | 9.8 | 1.5% | Sep 13, 2023 | A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthentic... |
| CVE-2023-38215 | MEDIUM | 5.4 | 0.4% | Sep 13, 2023 | Adobe Experience Manager versions 6.5.17 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2023-38214 | MEDIUM | 5.4 | 0.4% | Sep 13, 2023 | Adobe Experience Manager versions 6.5.17 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now