2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35965 | CRITICAL | 9.8 | 0.8% | Oct 11, 2023 | Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108... |
| CVE-2023-35056 | CRITICAL | 9.8 | 1.0% | Oct 11, 2023 | A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr... |
| CVE-2023-35055 | CRITICAL | 9.8 | 1.0% | Oct 11, 2023 | A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108. A specially cr... |
| CVE-2023-34426 | CRITICAL | 9.8 | 0.8% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd manage_request functionality of Yifan YF325 v1.0_2022110... |
| CVE-2023-34365 | CRITICAL | 9.8 | 0.8% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the libutils.so nvram_restore functionality of Yifan YF325 v1.0_20... |
| CVE-2023-34346 | CRITICAL | 9.8 | 1.3% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108... |
| CVE-2023-32645 | CRITICAL | 9.8 | 53.5% | Oct 11, 2023 | A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108. A ... |
| CVE-2023-32632 | CRITICAL | 9.8 | 1.2% | Oct 11, 2023 | A command execution vulnerability exists in the validate.so diag_ping_start functionality of Yifan YF325 v1.0_20221108. ... |
| CVE-2023-31272 | CRITICAL | 9.8 | 0.6% | Oct 11, 2023 | A stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan YF325 v1.0_20221108. A spe... |
| CVE-2023-24479 | CRITICAL | 9.8 | 1.7% | Oct 11, 2023 | An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A speci... |
| CVE-2023-44118 | CRITICAL | 9.1 | 0.4% | Oct 11, 2023 | Vulnerability of undefined permissions in the MeeTime module.Successful exploitation of this vulnerability will affect a... |
| CVE-2023-44116 | CRITICAL | 9.8 | 0.4% | Oct 11, 2023 | Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this ... |
| CVE-2023-44107 | CRITICAL | 9.1 | 0.4% | Oct 11, 2023 | Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of th... |
| CVE-2023-44105 | CRITICAL | 9.8 | 0.4% | Oct 11, 2023 | Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this... |
| CVE-2023-5521 | CRITICAL | 9.8 | 0.6% | Oct 11, 2023 | Incorrect Authorization in GitHub repository tiann/kernelsu prior to v0.6.9. |
| CVE-2023-44981 | CRITICAL | 9.1 | 1.7% | Oct 11, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Apache ZooKeeper. If SASL Quorum Peer authentication i... |
| CVE-2023-44106 | CRITICAL | 9.8 | 0.4% | Oct 11, 2023 | API permission management vulnerability in the Fwk-Display module.Successful exploitation of this vulnerability may caus... |
| CVE-2023-4309 | CRITICAL | 9.8 | 1.1% | Oct 10, 2023 | Election Services Co. (ESC) Internet Election Service is vulnerable to SQL injection in multiple pages and parameters. T... |
| CVE-2023-36434 | CRITICAL | 9.8 | 2.2% | Oct 10, 2023 | Windows IIS Server Elevation of Privilege Vulnerability |
| CVE-2023-36419 | CRITICAL | 9.8 | 1.7% | Oct 10, 2023 | Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability |
| CVE-2023-35349 | CRITICAL | 9.8 | 2.8% | Oct 10, 2023 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
| CVE-2023-5495 | CRITICAL | 9.8 | 1.1% | Oct 10, 2023 | A vulnerability was found in QDocs Smart School 6.4.1. It has been classified as critical. This affects an unknown part ... |
| CVE-2023-41679 | CRITICAL | 9.6 | 0.5% | Oct 10, 2023 | An improper access control vulnerability [CWE-284] in FortiManager management interface 7.2.0 through 7.2.2, 7.0.0 throu... |
| CVE-2023-36550 | CRITICAL | 9.8 | 2.1% | Oct 10, 2023 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio... |
| CVE-2023-36549 | CRITICAL | 9.8 | 2.1% | Oct 10, 2023 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now