2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-34750CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=s...
CVE-2023-34747CRITICAL9.8File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.
CVE-2023-3238CRITICAL9.8A vulnerability, which was classified as critical, has been found in OTCMS up to 6.62. This issue affects some unknown p...
CVE-2023-3237CRITICAL9.8A vulnerability classified as critical was found in OTCMS up to 6.62. This vulnerability affects unknown code. The manip...
CVE-2023-3234CRITICAL9.8A vulnerability was found in Zhong Bang CRMEB up to 4.6.0. It has been declared as problematic. Affected by this vulnera...
CVE-2023-3232CRITICAL9.8A vulnerability was found in Zhong Bang CRMEB up to 4.6.0 and classified as critical. This issue affects some unknown pr...
CVE-2023-32015CRITICAL9.8Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2023-32014CRITICAL9.8Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2023-29363CRITICAL9.8Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2023-29357CRITICAL9.8Microsoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2023-24470CRITICAL9.1Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.
CVE-2023-34944CRITICAL9.8An arbitrary file upload vulnerability in the /fileUpload.lib.php component of Chamilo 1.11.* up to v1.11.18 allows atta...
CVE-2023-29562CRITICAL9.8TP-Link TL-WPA7510 (EU)_V2_190125 was discovered to contain a stack overflow via the operation parameter at /admin/local...
CVE-2023-27836CRITICAL9.8TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the deviceP...
CVE-2023-3224CRITICAL9.8Code Injection in GitHub repository nuxt/nuxt prior to 3.5.3.
CVE-2023-34249CRITICAL9.8benjjvi/PyBB is an open source bulletin board. Prior to commit dcaeccd37198ecd3e41ea766d1099354b60d69c2, benjjvi/PyBB is...
CVE-2023-31541CRITICAL9.8A unrestricted file upload vulnerability was discovered in the ‘Browse and upload images’ feature of the CKEditor v1.2.3...
CVE-2023-27837CRITICAL9.8TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the key par...
CVE-2023-35064CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Satos Satos Mobile...
CVE-2023-3050CRITICAL9.8Reliance on Cookies without Validation and Integrity Checking in a Security Decision vulnerability in TMT Lockcell allow...
CVE-2023-3049CRITICAL9.8Unrestricted Upload of File with Dangerous Type vulnerability in TMT Lockcell allows Command Injection. This issue affe...
CVE-2023-3048CRITICAL9.8Authorization Bypass Through User-Controlled Key vulnerability in TMT Lockcell allows Authentication Abuse, Authenticati...
CVE-2023-3047CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TMT Lockcell allow...
CVE-2023-2807CRITICAL9.8Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated a...
CVE-2023-30766CRITICAL9.8Hidden functionality issue exists in KB-AHR series and KB-IRIP series. If this vulnerability is exploited, an arbitrary ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now