2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21147 | HIGH | 7.8 | 0.1% | Jun 28, 2023 | In lwis_i2c_device_disable of lwis_device_i2c.c, there is a possible UAF due to a logic error in the code. This could le... |
| CVE-2023-21146 | MEDIUM | 6.7 | 0.1% | Jun 28, 2023 | there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with... |
| CVE-2023-21066 | CRITICAL | 9.8 | 0.5% | Jun 28, 2023 | In cd_CodeMsg of cd_codec.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to r... |
| CVE-2023-2625 | HIGH | 8 | 0.4% | Jun 28, 2023 | A vulnerability exists that can be exploited by an authenticated client that is connected to the same network segment as... |
| CVE-2023-27866 | CRITICAL | 9.8 | 0.9% | Jun 28, 2023 | IBM Informix JDBC Driver 4.10 and 4.50 is susceptible to remote code execution attack via JNDI injection when driver cod... |
| CVE-2023-34937 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the UpdateSnat function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS... |
| CVE-2023-34936 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the UpdateMacClone function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service ... |
| CVE-2023-34935 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the AddWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service ... |
| CVE-2023-34934 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the Edit_BasicSSID_5G function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Servi... |
| CVE-2023-34933 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the UpdateWanParams function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service... |
| CVE-2023-26615 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleAction... |
| CVE-2023-20199 | MEDIUM | 6.6 | 0.3% | Jun 28, 2023 | A vulnerability in Cisco Duo Two-Factor Authentication for macOS could allow an authenticated, physical attacker to bypa... |
| CVE-2023-20192 | HIGH | 7.7 | 0.7% | Jun 28, 2023 | Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow ... |
| CVE-2023-20188 | MEDIUM | 4.8 | 0.5% | Jun 28, 2023 | A vulnerability in the web-based management interface of Cisco Small Business 200 Series Smart Switches, Cisco Small Bus... |
| CVE-2023-20178 | HIGH | 7.8 | 5.5% | Jun 28, 2023 | A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco S... |
| CVE-2023-20136 | MEDIUM | 6.5 | 0.5% | Jun 28, 2023 | A vulnerability in the OpenAPI of Cisco Secure Workload could allow an authenticated, remote attacker with the privilege... |
| CVE-2023-20120 | MEDIUM | 6.1 | 0.5% | Jun 28, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web ... |
| CVE-2023-20119 | MEDIUM | 6.1 | 0.5% | Jun 28, 2023 | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, ... |
| CVE-2023-20116 | MEDIUM | 5.7 | 0.6% | Jun 28, 2023 | A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications Manager (Unified CM) and... |
| CVE-2023-20108 | HIGH | 7.5 | 0.9% | Jun 28, 2023 | A vulnerability in the XCP Authentication Service of the Cisco Unified Communications Manager IM & Presence Service ... |
| CVE-2023-20105 | MEDIUM | 6.5 | 0.9% | Jun 28, 2023 | A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communicati... |
| CVE-2023-20028 | MEDIUM | 5.4 | 0.5% | Jun 28, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web ... |
| CVE-2023-20006 | HIGH | 7.5 | 0.9% | Jun 28, 2023 | A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Soft... |
| CVE-2023-3445 | MEDIUM | 4.8 | 0.5% | Jun 28, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository spinacms/spina prior to 2.15.1. |
| CVE-2023-36467 | HIGH | 8.8 | 1.0% | Jun 28, 2023 | AWS data.all is an open source development framework to help users build a data marketplace on Amazon Web Services. data... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now