2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-35965CRITICAL9.8Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108...
CVE-2023-35056CRITICAL9.8A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr...
CVE-2023-35055CRITICAL9.8A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr...
CVE-2023-34426CRITICAL9.8A stack-based buffer overflow vulnerability exists in the httpd manage_request functionality of Yifan YF325 v1.0_2022110...
CVE-2023-34365CRITICAL9.8A stack-based buffer overflow vulnerability exists in the libutils.so nvram_restore functionality of Yifan YF325 v1.0_20...
CVE-2023-34346CRITICAL9.8A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108...
CVE-2023-32645CRITICAL9.8A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108. A ...
CVE-2023-32632CRITICAL9.8A command execution vulnerability exists in the validate.so diag_ping_start functionality of Yifan YF325 v1.0_20221108. ...
CVE-2023-31272CRITICAL9.8A stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan YF325 v1.0_20221108. A spe...
CVE-2023-24479CRITICAL9.8An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A speci...
CVE-2023-44118CRITICAL9.1Vulnerability of undefined permissions in the MeeTime module.Successful exploitation of this vulnerability will affect a...
CVE-2023-44116CRITICAL9.8Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this ...
CVE-2023-44107CRITICAL9.1 Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of th...
CVE-2023-44105CRITICAL9.8Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this...
CVE-2023-5521CRITICAL9.8Incorrect Authorization in GitHub repository tiann/kernelsu prior to v0.6.9.
CVE-2023-44981CRITICAL9.1Authorization Bypass Through User-Controlled Key vulnerability in Apache ZooKeeper. If SASL Quorum Peer authentication i...
CVE-2023-44106CRITICAL9.8API permission management vulnerability in the Fwk-Display module.Successful exploitation of this vulnerability may caus...
CVE-2023-4309CRITICAL9.8Election Services Co. (ESC) Internet Election Service is vulnerable to SQL injection in multiple pages and parameters. T...
CVE-2023-36434CRITICAL9.8Windows IIS Server Elevation of Privilege Vulnerability
CVE-2023-36419CRITICAL9.8Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability
CVE-2023-35349CRITICAL9.8Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2023-5495CRITICAL9.8A vulnerability was found in QDocs Smart School 6.4.1. It has been classified as critical. This affects an unknown part ...
CVE-2023-41679CRITICAL9.6An improper access control vulnerability [CWE-284] in FortiManager management interface 7.2.0 through 7.2.2, 7.0.0 throu...
CVE-2023-36550CRITICAL9.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio...
CVE-2023-36549CRITICAL9.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now