2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21647 | MEDIUM | 6.5 | 0.3% | Aug 8, 2023 | Information disclosure in Bluetooth when an GATT packet is received due to improper input validation. |
| CVE-2023-21643 | HIGH | 7.8 | 0.2% | Aug 8, 2023 | Memory corruption due to untrusted pointer dereference in automotive during system call. |
| CVE-2023-21627 | HIGH | 7.8 | 0.1% | Aug 8, 2023 | Memory corruption in Trusted Execution Environment while calling service API with invalid address. |
| CVE-2023-21626 | HIGH | 7.1 | 0.1% | Aug 8, 2023 | Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key. |
| CVE-2023-21625 | HIGH | 7.5 | 0.3% | Aug 8, 2023 | Information disclosure in Network Services due to buffer over-read while the device receives DNS response. |
| CVE-2023-4009 | HIGH | 7.2 | 0.6% | Aug 8, 2023 | In MongoDB Ops Manager v5.0 prior to 5.0.22 and v6.0 prior to 6.0.17 it is possible for an authenticated user with proje... |
| CVE-2023-3898 | CRITICAL | 9.8 | 0.5% | Aug 8, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mAyaNet E-Commerce... |
| CVE-2023-37570 | HIGH | 8.8 | 0.5% | Aug 8, 2023 | This vulnerability exists in ESDS Emagic Data Center Management Suit due to non-expiry of session cookie. By reusing th... |
| CVE-2023-37569 | HIGH | 8.8 | 24.0% | Aug 8, 2023 | This vulnerability exists in ESDS Emagic Data Center Management Suit due to lack of input sanitization in its Ping compo... |
| CVE-2023-3573 | HIGH | 8.8 | 0.9% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-3572 | CRITICAL | 10 | 0.8% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote, unauthenticated attacker may use an ... |
| CVE-2023-3571 | HIGH | 8.8 | 0.4% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-3570 | HIGH | 8.8 | 0.9% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-3569 | MEDIUM | 4.9 | 1.0% | Aug 8, 2023 | In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior... |
| CVE-2023-3526 | CRITICAL | 9.6 | 1.6% | Aug 8, 2023 | In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior ... |
| CVE-2023-39978 | LOW | 3.3 | 0.3% | Aug 8, 2023 | ImageMagick before 6.9.12-91 allows attackers to cause a denial of service (memory consumption) in Magick::Draw. |
| CVE-2023-39977 | — | — | — | Aug 8, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-3268. Reason: This candidate is a reservation du... |
| CVE-2023-39976 | CRITICAL | 9.8 | 1.0% | Aug 8, 2023 | log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not consi... |
| CVE-2023-39440 | MEDIUM | 4.4 | 0.1% | Aug 8, 2023 | In SAP BusinessObjects Business Intelligence - version 420, If a user logs in to a particular program, under certain sp... |
| CVE-2023-39439 | CRITICAL | 9.8 | 0.6% | Aug 8, 2023 | SAP Commerce Cloud may accept an empty passphrase for user ID and passphrase authentication, allowing users to log into ... |
| CVE-2023-39437 | MEDIUM | 5.4 | 0.3% | Aug 8, 2023 | SAP business One allows - version 10.0, allows an attacker to insert malicious code into the content of a web page or ap... |
| CVE-2023-39436 | MEDIUM | 5.8 | 0.4% | Aug 8, 2023 | SAP Supplier Relationship Management -versions 600, 602, 603, 604, 605, 606, 616, 617, allows an unauthorized attacker t... |
| CVE-2023-37492 | MEDIUM | 6.5 | 0.4% | Aug 8, 2023 | SAP NetWeaver Application Server ABAP and ABAP Platform - versions SAP_BASIS 700, SAP_BASIS 701, SAP_BASIS 702, SAP_BASI... |
| CVE-2023-37491 | HIGH | 8.8 | 0.4% | Aug 8, 2023 | The ACL (Access Control List) of SAP Message Server - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, RNL64... |
| CVE-2023-37490 | CRITICAL | 9 | 0.2% | Aug 8, 2023 | SAP Business Objects Installer - versions 420, 430, allows an authenticated attacker within the network to overwrite an ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now