2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-23772HIGH8.8Motorola MBTS Site Controller fails to check firmware update authenticity. The Motorola MBTS Site Controller lacks crypt...
CVE-2023-23771HIGH8.4Motorola MBTS Base Radio accepts hard-coded backdoor password. The Motorola MBTS Base Radio Man Machine Interface (MMI),...
CVE-2023-23770CRITICAL9.8Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interf...
CVE-2023-32457HIGH8.8 Dell PowerScale OneFS, versions 8.2.2.x-9.5.0.x, contains an improper privilege management vulnerability. A remote atta...
CVE-2023-41363MEDIUM4.3In Cerebrate 1.14, a vulnerability in UserSettingsController allows authenticated users to change user settings of other...
CVE-2023-41361CRITICAL9.8An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv softw...
CVE-2023-41360CRITICAL9.1An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in a...
CVE-2023-41359CRITICAL9.1An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_...
CVE-2023-41358HIGH7.5An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.
CVE-2023-1995HIGH7.5Insufficient Logging vulnerability in Hitachi HiRDB Server, HiRDB Server With Addtional Function, HiRDB Structured Data ...
CVE-2023-39650CRITICAL9.8Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability via the id parameter a...
CVE-2023-4569MEDIUM5.5A memory leak flaw was found in nft_set_catchall_flush in net/netfilter/nf_tables_api.c in the Linux Kernel. This issue ...
CVE-2023-41005HIGH7.8An issue in Pagekit pagekit v.1.0.18 alows a remote attacker to execute arbitrary code via thedownloadAction and updateA...
CVE-2023-40998HIGH7.5Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a de...
CVE-2023-40997HIGH7.5Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a de...
CVE-2023-40857HIGH8.8Buffer Overflow vulnerability in VirusTotal yara v.4.3.2 allows a remote attacker to execute arbtirary code via the yr_e...
CVE-2023-40828HIGH7.5An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary ...
CVE-2023-40827HIGH7.5An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary ...
CVE-2023-40826HIGH7.5An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary ...
CVE-2023-40825HIGH7.2An issue in Perfree PerfreeBlog v.3.1.2 allows a remote attacker to execute arbitrary code via crafted plugin listed in ...
CVE-2023-40781MEDIUM6.5Buffer Overflow vulnerability in Libming Libming v.0.4.8 allows a remote attacker to cause a denial of service via a cra...
CVE-2023-39059HIGH8.8An issue in ansible semaphore v.2.8.90 allows a remote attacker to execute arbitrary code via a crafted payload to the e...
CVE-2023-34725MEDIUM6.8An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows physical attackers to gain escalated pri...
CVE-2023-34724MEDIUM6.8An issue was discovered in TECHView LA5570 Wireless Gateway 1.0.19_T53, allows physical attackers to gain escalated priv...
CVE-2023-40170MEDIUM6.1jupyter-server is the backend for Jupyter web applications. Improper cross-site credential checks on `/files/` URLs coul...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now