CVE-2023-22423 Overview
CVE-2023-22423 has been rejected by its CVE Numbering Authority (CNA). The identifier is marked as unused and does not describe an active vulnerability. No affected products, vendors, or technical details are associated with this record in the National Vulnerability Database (NVD).
Security teams tracking this identifier should remove it from active vulnerability management workflows. Rejected CVEs do not require patching, mitigation, or detection engineering because no underlying flaw exists.
Critical Impact
No impact. This CVE ID has been withdrawn by the assigning CNA as unused and carries no security implications.
Affected Products
- No affected products listed
- No vendor information available
- No component data recorded in NVD
Discovery Timeline
- 2026-08-27 - CVE-2023-22423 published to NVD as a rejected identifier
- 2026-08-27 - Last updated in NVD database
Technical Details for CVE-2023-22423
Vulnerability Analysis
CVE-2023-22423 contains no technical vulnerability data. The CVE Numbering Authority rejected the identifier with the stated reason that it is unused. Rejected CVE entries typically result from duplicate assignments, reserved identifiers that were never populated, or administrative withdrawals by the assigning CNA.
Because the record contains no vulnerability description, affected software, or Common Weakness Enumeration (CWE) mapping, no exploitation analysis applies. Security researchers and vulnerability management platforms should treat this identifier as informational only.
Root Cause
No root cause exists. The identifier was reserved but never associated with a disclosed flaw. The CNA marked the record as rejected to prevent confusion in downstream vulnerability feeds.
Attack Vector
No attack vector applies. The record contains no exploitability metrics, no Common Vulnerability Scoring System (CVSS) vector, and no Exploit Prediction Scoring System (EPSS) data. There is no known proof-of-concept code and the CVE is not listed on the CISA Known Exploited Vulnerabilities (KEV) catalog.
Rejected CVE entries do not require code samples because no vulnerable code path is defined. See the NVD entry for CVE-2023-22423 for the authoritative status.
Detection Methods for CVE-2023-22423
Indicators of Compromise
- No indicators of compromise apply because no vulnerability exists for this identifier.
- Vulnerability scanners reporting CVE-2023-22423 should be updated to consume the current NVD status.
Detection Strategies
- Filter rejected CVE identifiers from vulnerability management dashboards to reduce analyst noise.
- Cross-reference scanner findings against the NVD REST API to confirm current CVE status before ticketing.
Monitoring Recommendations
- Subscribe to NVD data feeds to receive updates when CVE records change state from reserved to published or rejected.
- Track CNA reject notices in internal vulnerability intelligence pipelines to prevent stale references in reports.
How to Mitigate CVE-2023-22423
Immediate Actions Required
- Remove CVE-2023-22423 from active tracking systems, tickets, and risk registers.
- Confirm the rejected status against the official NVD record before closing related work items.
- Notify downstream consumers of vulnerability data that this identifier carries no security action.
Patch Information
No patch is required. No vendor has issued an advisory because no product is affected. Security teams should not allocate remediation effort to this identifier.
Workarounds
- No workarounds apply. The identifier is administratively withdrawn.
- Maintain hygiene in vulnerability intake processes by automatically flagging rejected CVEs during ingestion.
Disclaimer: This content was generated using AI. While we strive for accuracy, please verify critical information with official sources.

