2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-40294MEDIUM6.5libboron in Boron 2.0.8 has a heap-based buffer overflow in ur_parseBlockI at i_parse_blk.c.
CVE-2023-40293MEDIUM6.8Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection ob...
CVE-2023-40292MEDIUM4.3Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets.
CVE-2023-40291MEDIUM6.8Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an i...
CVE-2023-3262MEDIUM6.7The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactio...
CVE-2023-3261HIGH7.2The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier contains a buffer overflow vulnerability in th...
CVE-2023-3260HIGH8.8The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `us...
CVE-2023-3259CRITICAL9.8The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to authentication bypass. By man...
CVE-2023-40283HIGH7.8An issue was discovered in l2cap_sock_release in net/bluetooth/l2cap_sock.c in the Linux kernel before 6.4.10. There is ...
CVE-2023-40274HIGH7.5An issue was discovered in zola 0.13.0 through 0.17.2. The custom implementation of a web server, available via the "zol...
CVE-2023-23208MEDIUM6.1Genesys Administrator Extension (GAX) before 9.0.105.15 is vulnerable to Cross Site Scripting (XSS) via the Business Str...
CVE-2023-39406HIGH7.5Permission control vulnerability in the XLayout component. Successful exploitation of this vulnerability may cause apps ...
CVE-2023-39404HIGH7.5Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation o...
CVE-2023-39403CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39402CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39401CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39400CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39399CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39398CRITICAL9.1Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause san...
CVE-2023-39397HIGH7.5Input parameter verification vulnerability in the communication system. Successful exploitation of this vulnerability ma...
CVE-2023-39395HIGH7.5Mismatch vulnerability in the serialization process in the communication system. Successful exploitation of this vulnera...
CVE-2023-39394HIGH7.5Vulnerability of API privilege escalation in the wifienhance module. Successful exploitation of this vulnerability may c...
CVE-2023-39391HIGH7.5Vulnerability of system file information leakage in the USB Service module. Successful exploitation of this vulnerabilit...
CVE-2023-39390HIGH7.5Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation o...
CVE-2023-39387MEDIUM5.3Vulnerability of permission control in the window management module. Successful exploitation of this vulnerability may c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now