2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-29632 | CRITICAL | 9.8 | 1.0% | Jun 6, 2023 | PrestaShop jmspagebuilder 3.x is vulnerable to SQL Injection via ajax_jmspagebuilder.php. |
| CVE-2023-34111 | CRITICAL | 9.8 | 4.0% | Jun 6, 2023 | The `Release PR Merged` workflow in the github repo taosdata/grafanaplugin is subject to a command injection vulnerabili... |
| CVE-2023-33532 | CRITICAL | 9.8 | 18.0% | Jun 6, 2023 | There is a command injection vulnerability in the Netgear R6250 router with Firmware Version 1.0.4.48. If an attacker ga... |
| CVE-2023-31569 | CRITICAL | 9.8 | 3.2% | Jun 6, 2023 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection via the setWanCfg function. |
| CVE-2023-32628 | CRITICAL | 9.8 | 0.7% | Jun 6, 2023 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an a... |
| CVE-2023-32540 | CRITICAL | 9.8 | 0.9% | Jun 6, 2023 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an ... |
| CVE-2023-29631 | CRITICAL | 9.8 | 0.7% | Jun 5, 2023 | PrestaShop jmsslider 1.6.0 is vulnerable to Incorrect Access Control via ajax_jmsslider.php. |
| CVE-2023-29630 | CRITICAL | 9.8 | 1.0% | Jun 5, 2023 | PrestaShop jmsmegamenu 1.1.x and 2.0.x is vulnerable to SQL Injection via ajax_jmsmegamenu.php. |
| CVE-2023-29629 | CRITICAL | 9.8 | 1.0% | Jun 5, 2023 | PrestaShop jmsthemelayout 2.5.5 is vulnerable to SQL Injection via ajax_jmsvermegamenu.php. |
| CVE-2023-33386 | CRITICAL | 9.8 | 1.0% | Jun 5, 2023 | MarsCTF 1.2.1 has an arbitrary file upload vulnerability in the interface for uploading attachments in the background. |
| CVE-2023-3065 | CRITICAL | 9.1 | 0.8% | Jun 5, 2023 | Improper Authentication vulnerability in Mobatime mobile application AMXGT100 allows Authentication Bypass.This issue af... |
| CVE-2023-3100 | CRITICAL | 9.8 | 0.7% | Jun 5, 2023 | A vulnerability, which was classified as critical, has been found in IBOS 4.5.5. Affected by this issue is the function ... |
| CVE-2023-0636 | CRITICAL | 9.8 | 1.4% | Jun 5, 2023 | Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2C... |
| CVE-2023-0635 | CRITICAL | 9.8 | 0.4% | Jun 5, 2023 | Improper Privilege Management vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021... |
| CVE-2023-3094 | CRITICAL | 9.8 | 0.7% | Jun 4, 2023 | A vulnerability classified as critical has been found in code-projects Agro-School Management System 1.0. Affected is th... |
| CVE-2023-3086 | CRITICAL | 9 | 0.9% | Jun 3, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. |
| CVE-2023-2781 | CRITICAL | 9.8 | 1.2% | Jun 3, 2023 | The User Email Verification for WooCommerce plugin for WordPress is vulnerable to authentication bypass via authenticate... |
| CVE-2023-33762 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a SQL injection vulnerability via the Activity... |
| CVE-2023-33675 | CRITICAL | 9.8 | 1.2% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the get_parentControl_li... |
| CVE-2023-33673 | CRITICAL | 9.8 | 1.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewal... |
| CVE-2023-33671 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the deviceId parameter in the saveParentContro... |
| CVE-2023-33670 | CRITICAL | 9.8 | 1.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the sub_4a79ec function. |
| CVE-2023-33669 | CRITICAL | 9.8 | 2.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the timeZone parameter in the sub_44db3c funct... |
| CVE-2023-3069 | CRITICAL | 9.8 | 0.6% | Jun 2, 2023 | Unverified Password Change in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-3068 | CRITICAL | 9.8 | 0.8% | Jun 2, 2023 | A vulnerability classified as critical has been found in Campcodes Retro Cellphone Online Store 1.0. Affected is an unkn... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now