2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41281 | HIGH | 7.2 | 1.0% | Feb 2, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-41280 | HIGH | 7.2 | 0.6% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41279 | HIGH | 7.2 | 0.6% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41278 | HIGH | 7.2 | 0.5% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41277 | HIGH | 7.2 | 0.5% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41276 | HIGH | 7.2 | 0.5% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41275 | HIGH | 7.2 | 0.5% | Feb 2, 2024 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2023-41273 | HIGH | 7.2 | 0.6% | Feb 2, 2024 | A heap-based buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploi... |
| CVE-2023-39302 | HIGH | 7.2 | 1.1% | Feb 2, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-39297 | HIGH | 8.8 | 1.4% | Feb 2, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-38273 | HIGH | 7.5 | 0.7% | Feb 2, 2024 | IBM Cloud Pak System 2.3.1.1, 2.3.2.0, and 2.3.3.7 uses an inadequate account lockout setting that could allow a remote ... |
| CVE-2023-47142 | HIGH | 8.8 | 0.3% | Feb 2, 2024 | IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.10 could allow an attacker on the organization... |
| CVE-2023-6676 | HIGH | 8.8 | 0.3% | Feb 2, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in National Keep Cyber Security Services CyberMath allows Cross Site Req... |
| CVE-2023-47148 | HIGH | 7.5 | 0.6% | Feb 2, 2024 | IBM Storage Protect Plus Server 10.1.0 through 10.1.15.2 Admin Console could allow a remote attacker to obtain sensitive... |
| CVE-2023-39611 | HIGH | 7.5 | 0.6% | Feb 2, 2024 | An issue in Software FX Chart FX 7 version 7.0.4962.20829 allows attackers to enumerate and read files from the local fi... |
| CVE-2023-48645 | HIGH | 7.8 | 0.2% | Feb 2, 2024 | An issue was discovered in the Archibus app 4.0.3 for iOS. It uses a local database that is synchronized with a Web cent... |
| CVE-2023-45734 | HIGH | 8.8 | 0.3% | Feb 2, 2024 | in OpenHarmony v3.2.4 and prior versions allow an adjacent attacker arbitrary code execution through out-of-bounds writ... |
| CVE-2023-46045 | HIGH | 7.8 | 0.7% | Feb 2, 2024 | Graphviz 2.36.0 through 9.x before 10.0.1 has an out-of-bounds read via a crafted config6a file. NOTE: exploitability ma... |
| CVE-2023-38263 | HIGH | 8.8 | 0.5% | Feb 2, 2024 | IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow an authenticated user to perform unauthorized actions due to im... |
| CVE-2023-50962 | HIGH | 7.5 | 0.3% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 MFA does not implement the "HTTP Strict Transport Security" (HSTS) web security policy mec... |
| CVE-2023-50937 | HIGH | 7.5 | 0.3% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt... |
| CVE-2023-50936 | HIGH | 8.8 | 0.4% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 does not invalidate session after logout which could allow an authenticated user to impers... |
| CVE-2023-50326 | HIGH | 7.5 | 0.7% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 uses an inadequate account lockout setting that could allow a remote attacker to brute for... |
| CVE-2023-50939 | HIGH | 7.5 | 0.3% | Feb 2, 2024 | IBM PowerSC 1.3, 2.0, and 2.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt... |
| CVE-2023-49610 | HIGH | 8.1 | 0.4% | Feb 1, 2024 | MachineSense FeverWarn Raspberry Pi-based devices lack input sanitization, which could allow an attacker on a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now