2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27881 | CRITICAL | 9.9 | 0.7% | Jun 7, 2023 | A user could use the “Upload Resource” functionality to upload files to any location on the disk. |
| CVE-2023-24476 | LOW | 3.3 | 0.1% | Jun 7, 2023 | An attacker with local access to the machine could record the traffic, which could allow them to resend requests witho... |
| CVE-2023-33848 | MEDIUM | 6.5 | 0.8% | Jun 7, 2023 | IBM TXSeries for Multiplatforms 8.1, 8.2, 9.1, CICS TX Standard, 11.1, CICS TX Advanced 10.1, and 11.1 could allow a pri... |
| CVE-2023-33556 | CRITICAL | 9.8 | 2.0% | Jun 7, 2023 | TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the staticGw para... |
| CVE-2023-33496 | CRITICAL | 9.8 | 1.0% | Jun 7, 2023 | xxl-rpc v1.7.0 was discovered to contain a deserialization vulnerability via the component com.xxl.rpc.core.remoting.net... |
| CVE-2023-31116 | CRITICAL | 9.8 | 0.6% | Jun 7, 2023 | An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permiss... |
| CVE-2023-31115 | HIGH | 7.5 | 0.5% | Jun 7, 2023 | An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer ... |
| CVE-2023-31114 | CRITICAL | 9.1 | 0.6% | Jun 7, 2023 | An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer ... |
| CVE-2023-2866 | HIGH | 7.8 | 0.1% | Jun 7, 2023 | If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess ve... |
| CVE-2023-25177 | HIGH | 7.8 | 0.3% | Jun 7, 2023 | Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to stack-based buffer overflow, which c... |
| CVE-2023-24014 | HIGH | 7.8 | 0.2% | Jun 7, 2023 | Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to heap-based buffer overflow, which cou... |
| CVE-2023-1864 | HIGH | 7.5 | 0.9% | Jun 7, 2023 | FANUC ROBOGUIDE-HandlingPRO Versions 9 Rev.ZD and prior is vulnerable to a path traversal, which could allow an attacke... |
| CVE-2023-1709 | HIGH | 7.8 | 0.3% | Jun 7, 2023 | Datalogics Library APDFLThe v18.0.4PlusP1e and prior contains a stack-based buffer overflow due to documents containing... |
| CVE-2023-34237 | CRITICAL | 9.8 | 1.7% | Jun 7, 2023 | SABnzbd is an open source automated Usenet download tool. A design flaw was discovered in SABnzbd that could allow remot... |
| CVE-2023-33865 | HIGH | 7.8 | 0.9% | Jun 7, 2023 | RenderDoc before 1.27 allows local privilege escalation via a symlink attack. It relies on the /tmp/RenderDoc directory ... |
| CVE-2023-33864 | CRITICAL | 9.8 | 3.6% | Jun 7, 2023 | StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It ... |
| CVE-2023-33863 | CRITICAL | 9.8 | 3.6% | Jun 7, 2023 | SerialiseValue in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. 0xffffffff is sign-... |
| CVE-2023-33595 | MEDIUM | 5.5 | 0.4% | Jun 7, 2023 | CPython v3.12.0 alpha 7 was discovered to contain a heap use-after-free via the function ascii_decode at /Objects/unicod... |
| CVE-2023-33510 | HIGH | 7.5 | 4.0% | Jun 7, 2023 | Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters. |
| CVE-2023-33284 | HIGH | 8.8 | 1.1% | Jun 7, 2023 | Marval MSM through 14.19.0.12476 and 15.0 has a Remote Code Execution vulnerability. A remote attacker authenticated as ... |
| CVE-2023-33283 | MEDIUM | 5.5 | 0.1% | Jun 7, 2023 | Marval MSM through 14.19.0.12476 uses a static encryption key for secrets. An attacker that gains access to encrypted se... |
| CVE-2023-33282 | CRITICAL | 9.8 | 1.0% | Jun 7, 2023 | Marval MSM through 14.19.0.12476 and 15.0 has a System account with default credentials. A remote attacker is able to lo... |
| CVE-2023-2530 | CRITICAL | 9.8 | 1.1% | Jun 7, 2023 | A privilege escalation allowing remote code execution was discovered in the orchestration service. |
| CVE-2023-3152 | HIGH | 8.8 | 0.8% | Jun 7, 2023 | A vulnerability classified as critical has been found in SourceCodester Online Discussion Forum Site 1.0. This affects a... |
| CVE-2023-3151 | HIGH | 8.8 | 0.8% | Jun 7, 2023 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. Affected by... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now