2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-39213CRITICAL9.8Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may all...
CVE-2023-40042CRITICAL9.8TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setStaticDhcpConfig in /lib/cste_modules/lan.so...
CVE-2023-40041CRITICAL9.8TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setWiFiWpsConfig in /lib/cste_modules/wps.so. A...
CVE-2023-39216CRITICAL9.8Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable a...
CVE-2023-38186CRITICAL9.8Windows Mobile Device Management Elevation of Privilege Vulnerability
CVE-2023-36911CRITICAL9.8Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2023-36910CRITICAL9.8Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2023-36903CRITICAL9.8Windows System Assessment Tool Elevation of Privilege Vulnerability
CVE-2023-36534CRITICAL9.8Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalatio...
CVE-2023-35385CRITICAL9.8Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2023-21709CRITICAL9.8Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2023-20586CRITICAL9.8 A potential vulnerability was reported in Radeon™ Software Crimson ReLive Edition which may allow escalation of privile...
CVE-2023-39532CRITICAL9.8SES is a JavaScript environment that allows safe execution of arbitrary programs in Compartments. In version 0.18.0 prio...
CVE-2023-3522CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in a2 License Portal ...
CVE-2023-3386CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in a2 Camera Trap Tra...
CVE-2023-3651CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Digital Ant E-Comm...
CVE-2023-3716CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oduyo Online Colle...
CVE-2023-37682CRITICAL9.8Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-jms/...
CVE-2023-3717CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Farmakom Remote Ad...
CVE-2023-37372CRITICAL9.8A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications is vulnerable...
CVE-2023-28561CRITICAL9.8Memory corruption in QESL while processing payload from external ESL device to firmware.
CVE-2023-24845CRITICAL9.8A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80...
CVE-2023-3898CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mAyaNet E-Commerce...
CVE-2023-3572CRITICAL10In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote, unauthenticated attacker may use an ...
CVE-2023-3526CRITICAL9.6In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now