2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-52352MEDIUM5.5In Network Adapter Service, there is a possible missing permission check. This could lead to local denial of service wit...
CVE-2023-52350MEDIUM4.4In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o...
CVE-2023-52349MEDIUM4.4In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o...
CVE-2023-52348MEDIUM4.4In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o...
CVE-2023-52347MEDIUM5.5In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o...
CVE-2023-52346MEDIUM4.4In modem driver, there is a possible system crash due to improper input validation. This could lead to local information...
CVE-2023-52345MEDIUM6In modem driver, there is a possible system crash due to improper input validation. This could lead to local information...
CVE-2023-52344MEDIUM5.3In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote ...
CVE-2023-52343MEDIUM5.5In SecurityCommand message after as security has been actived., there is a possible improper input validation. This coul...
CVE-2023-52717MEDIUM5.3Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability w...
CVE-2023-6877MEDIUM5.4The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is...
CVE-2023-5912MEDIUM6.7 A potential memory leakage vulnerability was reported in some Lenovo Notebook products that may allow a local attacker ...
CVE-2023-4605MEDIUM6.5 A valid authenticated Lenovo XClarity Administrator (LXCA) user can potentially leverage an unauthenticated API endpoin...
CVE-2023-25494MEDIUM6.7 A potential vulnerability were reported in the BIOS of some Desktop, Smart Edge, and ThinkStation products that could a...
CVE-2023-25493MEDIUM6.7A potential vulnerability was reported in the BIOS update tool driver for some Desktop, Smart Edge, Smart Office, and Th...
CVE-2023-49965MEDIUM6.8SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page.
CVE-2023-5692MEDIUM5.3WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect...
CVE-2023-5973MEDIUM4.3Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user...
CVE-2023-36644MEDIUM5.3Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all order confirmations from the ...
CVE-2023-36643MEDIUM5.3Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all orders from the online shop v...
CVE-2023-25200MEDIUM4.7An HTML injection vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 that enables a remote ...
CVE-2023-25199MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 t...
CVE-2023-52641MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add NULL ptr dereference checking at the ...
CVE-2023-45552MEDIUM6.5In VeridiumID before 3.5.0, a stored cross-site scripting (XSS) vulnerability has been discovered in the admin portal th...
CVE-2023-44040MEDIUM6.1In VeridiumID before 3.5.0, the identity provider page is susceptible to a cross-site scripting (XSS) vulnerability that...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now