2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52352 | MEDIUM | 5.5 | 0.1% | Apr 8, 2024 | In Network Adapter Service, there is a possible missing permission check. This could lead to local denial of service wit... |
| CVE-2023-52350 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o... |
| CVE-2023-52349 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o... |
| CVE-2023-52348 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o... |
| CVE-2023-52347 | MEDIUM | 5.5 | 0.1% | Apr 8, 2024 | In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o... |
| CVE-2023-52346 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In modem driver, there is a possible system crash due to improper input validation. This could lead to local information... |
| CVE-2023-52345 | MEDIUM | 6 | 0.1% | Apr 8, 2024 | In modem driver, there is a possible system crash due to improper input validation. This could lead to local information... |
| CVE-2023-52344 | MEDIUM | 5.3 | 0.4% | Apr 8, 2024 | In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote ... |
| CVE-2023-52343 | MEDIUM | 5.5 | 0.3% | Apr 8, 2024 | In SecurityCommand message after as security has been actived., there is a possible improper input validation. This coul... |
| CVE-2023-52717 | MEDIUM | 5.3 | 0.3% | Apr 7, 2024 | Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability w... |
| CVE-2023-6877 | MEDIUM | 5.4 | 0.4% | Apr 7, 2024 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is... |
| CVE-2023-5912 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential memory leakage vulnerability was reported in some Lenovo Notebook products that may allow a local attacker ... |
| CVE-2023-4605 | MEDIUM | 6.5 | 0.5% | Apr 5, 2024 | A valid authenticated Lenovo XClarity Administrator (LXCA) user can potentially leverage an unauthenticated API endpoin... |
| CVE-2023-25494 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential vulnerability were reported in the BIOS of some Desktop, Smart Edge, and ThinkStation products that could a... |
| CVE-2023-25493 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential vulnerability was reported in the BIOS update tool driver for some Desktop, Smart Edge, Smart Office, and Th... |
| CVE-2023-49965 | MEDIUM | 6.8 | 0.3% | Apr 5, 2024 | SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page. |
| CVE-2023-5692 | MEDIUM | 5.3 | 0.7% | Apr 5, 2024 | WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect... |
| CVE-2023-5973 | MEDIUM | 4.3 | 0.2% | Apr 5, 2024 | Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user... |
| CVE-2023-36644 | MEDIUM | 5.3 | 1.0% | Apr 4, 2024 | Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all order confirmations from the ... |
| CVE-2023-36643 | MEDIUM | 5.3 | 0.7% | Apr 4, 2024 | Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all orders from the online shop v... |
| CVE-2023-25200 | MEDIUM | 4.7 | 0.4% | Apr 4, 2024 | An HTML injection vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 that enables a remote ... |
| CVE-2023-25199 | MEDIUM | 5.4 | 0.3% | Apr 4, 2024 | A reflected cross-site scripting (XSS) vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 t... |
| CVE-2023-52641 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add NULL ptr dereference checking at the ... |
| CVE-2023-45552 | MEDIUM | 6.5 | 0.3% | Apr 3, 2024 | In VeridiumID before 3.5.0, a stored cross-site scripting (XSS) vulnerability has been discovered in the admin portal th... |
| CVE-2023-44040 | MEDIUM | 6.1 | 0.4% | Apr 3, 2024 | In VeridiumID before 3.5.0, the identity provider page is susceptible to a cross-site scripting (XSS) vulnerability that... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now