Common Vulnerabilities and Exposures (CVE) is a critical tool for maintaining software security, providing a standardized way to track and manage vulnerabilities across systems. Organizations should regularly monitor CVE databases, assess the impact of vulnerabilities, and apply patches promptly to reduce the risk of exploitation.
CVE (Common Vulnerabilities and Exposures) is a public database that provides a standardized method for identifying, tracking, and referencing publicly disclosed security vulnerabilities in software and hardware.
Each vulnerability receives a unique identifier called a CVE ID (e.g., CVE-2023-12345), making it easier to reference specific vulnerabilities across different tools and databases.
Total Search Results: 158437
CVE ID | Description | Severity | Published Date | Affected Vendor | Action |
---|---|---|---|---|---|
CVE-2023-33057 | Transient DOS in Multi-Mode Call Processor while processing UE policy container. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33058 | Information disclosure in Modem while processing SIB5. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33059 | Memory corruption in Audio while processing the VOC packet data from ADSP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3306 | A vulnerability was found in Ruijie RG-EW1200G EW_3.0(1)B11P204. It has been declared as critical. This vulnerability affects unknown code of the file app.09df2a9e44ab48766f5f.js of the component Admin Password Handler. The manipulation leads to improper access controls. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-231802 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | Unknown | N/A | Ruijie | |
CVE-2023-33060 | Transient DOS in Core when DDR memory check is called while DDR is not initialized. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33061 | Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33062 | Transient DOS in WLAN Firmware while parsing a BTM request. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33063 | Memory corruption in DSP Services during a remote call from HLOS to DSP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33064 | Transient DOS in Audio when invoking callback function of ASM driver. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33065 | Information disclosure in Audio while accessing AVCS services from ADSP payload. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33066 | Memory corruption in Audio while processing RT proxy port register driver. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33067 | Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33068 | Memory corruption in Audio while processing IIR config data from AFE calibration block. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33069 | Memory corruption in Audio while processing the calibration data returned from ACDB loader. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3307 | A vulnerability was found in miniCal 1.0.0. It has been rated as critical. This issue affects some unknown processing of the file /booking/show_bookings/. The manipulation of the argument search_query leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-231803. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | Unknown | N/A | n/a | |
CVE-2023-33070 | Transient DOS in Automotive OS due to improper authentication to the secure IO calls. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33071 | Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33072 | Memory corruption in Core while processing control functions. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33074 | Memory corruption in Audio when SSR event is triggered after music playback is stopped. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33076 | Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33077 | Memory corruption in HLOS while converting from authorization token to HIDL vector. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33078 | Information Disclosure while processing IOCTL request in FastRPC. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33079 | Memory corruption in Audio while running invalid audio recording from ADSP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3308 | A vulnerability classified as problematic has been found in whaleal IceFrog 1.1.8. Affected is an unknown function of the component Aviator Template Engine. The manipulation leads to deserialization. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-231804. | Unknown | N/A | whaleal | |
CVE-2023-33080 | Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33081 | Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33082 | Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33083 | Memory corruption in WLAN Host while processing RRM beacon on the AP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33084 | Transient DOS while processing IE fragments from server during DTLS handshake. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33085 | Memory corruption in wearables while processing data from AON. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33086 | Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33087 | Memory corruption in Core while processing RX intent request. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33088 | Memory corruption when processing cmd parameters while parsing vdev. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33089 | Transient DOS when processing a NULL buffer while parsing WLAN vdev. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3309 | A vulnerability classified as problematic was found in SourceCodester Resort Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file ?page=rooms of the component Manage Room Page. The manipulation of the argument Cottage Number leads to cross site scripting. The attack can be launched remotely. The identifier VDB-231805 was assigned to this vulnerability. | Unknown | N/A | SourceCodester | |
CVE-2023-33090 | Transient DOS while processing channel information for speaker protection v2 module in ADSP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33092 | Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33094 | Memory corruption while running VK synchronization with KASAN enabled. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33095 | Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in NR. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33096 | Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33097 | Transient DOS in WLAN Firmware while processing a FTMR frame. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33098 | Transient DOS while parsing WPA IES, when it is passed with length more than expected size. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33099 | Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3310 | A vulnerability, which was classified as critical, has been found in code-projects Agro-School Management System 1.0. Affected by this issue is some unknown functionality of the file loaddata.php. The manipulation of the argument subject/course leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-231806 is the identifier assigned to this vulnerability. | Unknown | N/A | code-projects | |
CVE-2023-33100 | Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33101 | Transient DOS while processing DL NAS TRANSPORT message with payload length 0. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33103 | Transient DOS while processing CAG info IE received from NW. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33104 | Transient DOS while processing PDU Release command with a parameter PDU ID out of range. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33105 | Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33106 | Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33107 | Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33108 | Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33109 | Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3311 | A vulnerability, which was classified as problematic, was found in PuneethReddyHC online-shopping-system-advanced 1.0. This affects an unknown part of the file addsuppliers.php. The manipulation of the argument First name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-231807. | Unknown | N/A | PuneethReddyHC | |
CVE-2023-33110 | The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33111 | Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33112 | Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33113 | Memory corruption when resource manager sends the host kernel a reply message with multiple fragments. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33114 | Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33115 | Memory corruption while processing buffer initialization, when trusted report for certain report types are generated. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33116 | Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33117 | Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33118 | Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33119 | Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-3312 | A vulnerability was found in drivers/cpufreq/qcom-cpufreq-hw.c in cpufreq subsystem in the Linux Kernel. This flaw, during device unbind will lead to double release problem leading to denial of service. | Unknown | N/A | n/a | |
CVE-2023-33120 | Memory corruption in Audio when memory map command is executed consecutively in ADSP. | Unknown | N/A | Qualcomm, Inc. | |
CVE-2023-33121 | A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versions < V14.2.0.3). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted CGM files. An attacker could leverage this vulnerability to crash the application causing denial of service condition. | Unknown | N/A | Siemens | |
CVE-2023-33122 | A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versions < V14.2.0.3). The affected applications contain an out of bounds read past the end of an allocated buffer while parsing a specially crafted CGM file. This vulnerability could allow an attacker to disclose sensitive information. | Unknown | N/A | Siemens | |
CVE-2023-33123 | A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versions < V14.2.0.3). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted CGM files. This could allow an attacker to execute code in the context of the current process. | Unknown | N/A | Siemens | |
CVE-2023-33124 | A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versions < V14.2.0.3). The affected applications contain a memory corruption vulnerability while parsing specially crafted CGM files. This could allow an attacker to execute code in the context of the current process. | Unknown | N/A | Siemens | |
CVE-2023-33126 | .NET and Visual Studio Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33127 | .NET and Visual Studio Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33128 | .NET and Visual Studio Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33129 | Microsoft SharePoint Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-3313 | An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed an unauthorized user to execute system command injection for the purpose of privilege escalation or to execute arbitrary commands. | Unknown | N/A | Trellix | |
CVE-2023-33130 | Microsoft SharePoint Server Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33131 | Microsoft Outlook Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33132 | Microsoft SharePoint Server Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33133 | Microsoft Excel Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33134 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33135 | .NET and Visual Studio Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33136 | Azure DevOps Server Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33137 | Microsoft Excel Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33139 | Visual Studio Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-3314 | A vulnerability arises out of a failure to comprehensively sanitize the processing of a zip file(s). Incomplete neutralization of external commands used to control the process execution of the .zip application allows an authorized user to obtain control of the .zip application to execute arbitrary commands or obtain elevation of system privileges. | Unknown | N/A | Trellix | |
CVE-2023-33140 | Microsoft OneNote Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33141 | Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33142 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33143 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33144 | Visual Studio Code Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33145 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33146 | Microsoft Office Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33148 | Microsoft Office Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33149 | Microsoft Office Graphics Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-3315 | Missing permission checks in Jenkins Team Concert Plugin 2.4.1 and earlier allow attackers with Overall/Read permission to check for the existence of an attacker-specified file path on the Jenkins controller file system. | Unknown | N/A | Jenkins Project | |
CVE-2023-33150 | Microsoft Office Security Feature Bypass Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33151 | Microsoft Outlook Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33152 | Microsoft ActiveX Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33153 | Microsoft Outlook Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2023-33154 | Windows Partition Management Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft |
vunerability-insight.com © 2023 - 2025. All Rights Reserved.
Vulnerability Data Repositories v