2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30149 | CRITICAL | 9.8 | 18.4% | Jun 2, 2023 | SQL injection vulnerability in the City Autocomplete (cityautocomplete) module from ebewe.net for PrestaShop, prior to v... |
| CVE-2023-3062 | CRITICAL | 9.8 | 0.8% | Jun 2, 2023 | A vulnerability was found in code-projects Agro-School Management System 1.0. It has been classified as critical. Affect... |
| CVE-2023-3061 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | A vulnerability was found in code-projects Agro-School Management System 1.0 and classified as critical. This issue affe... |
| CVE-2023-34362 | CRITICAL | 9.8 | 99.9% | Jun 2, 2023 | In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.... |
| CVE-2023-33476 | CRITICAL | 9.8 | 2.1% | Jun 2, 2023 | ReadyMedia (MiniDLNA) versions from 1.1.15 up to 1.3.2 is vulnerable to Buffer Overflow. The vulnerability is caused by ... |
| CVE-2023-3059 | CRITICAL | 9.8 | 0.7% | Jun 2, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Online Exam Form Submission 1.0. This aff... |
| CVE-2023-3057 | CRITICAL | 9.8 | 1.2% | Jun 2, 2023 | A vulnerability was found in YFCMF up to 3.0.4. It has been rated as problematic. This issue affects some unknown proces... |
| CVE-2023-3056 | CRITICAL | 9.8 | 1.2% | Jun 2, 2023 | A vulnerability was found in YFCMF up to 3.0.4. It has been declared as problematic. This vulnerability affects unknown ... |
| CVE-2023-30604 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technolo... |
| CVE-2023-30603 | CRITICAL | 9.8 | 0.8% | Jun 2, 2023 | Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt t... |
| CVE-2023-28701 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | ELITE TECHNOLOGY CORP. Web Fax has a vulnerability of SQL Injection. An unauthenticated remote attacker can inject SQL c... |
| CVE-2023-28698 | CRITICAL | 9.8 | 0.8% | Jun 2, 2023 | Wade Graphic Design FANTSY has a vulnerability of insufficient authorization check. An unauthenticated remote user can e... |
| CVE-2023-3000 | CRITICAL | 9.8 | 0.8% | Jun 2, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Erikoglu Technolog... |
| CVE-2023-29746 | CRITICAL | 9.8 | 1.4% | Jun 2, 2023 | An issue found in The Thaiger v.1.2 for Android allows unauthorized apps to cause a code execution attack by manipulatin... |
| CVE-2023-29736 | CRITICAL | 9.8 | 1.2% | Jun 1, 2023 | Keyboard Themes 1.275.1.164 for Android contains a dictionary traversal vulnerability that allows unauthorized apps to o... |
| CVE-2023-29722 | CRITICAL | 9.1 | 0.8% | Jun 1, 2023 | The Glitter Unicorn Wallpaper app for Android 7.0 thru 8.0 allows unauthorized apps to actively request permission to mo... |
| CVE-2023-32713 | CRITICAL | 9.9 | 0.3% | Jun 1, 2023 | In Splunk App for Stream versions below 8.1.1, a low-privileged user could use a vulnerability in the streamfwd process ... |
| CVE-2023-33963 | CRITICAL | 9.8 | 1.3% | Jun 1, 2023 | DataEase is an open source data visualization and analysis tool. Prior to version 1.18.7, a deserialization vulnerabilit... |
| CVE-2023-3028 | CRITICAL | 9.8 | 0.2% | Jun 1, 2023 | Insufficient authentication in the MQTT backend (broker) allows an attacker to access and even manipulate the telemetry ... |
| CVE-2023-24584 | CRITICAL | 9.8 | 0.5% | Jun 1, 2023 | Controller 6000 is vulnerable to a buffer overflow via the Controller diagnostic web interface upload feature. Thi... |
| CVE-2023-33778 | CRITICAL | 9.8 | 0.6% | Jun 1, 2023 | Draytek Vigor Routers firmware versions below 3.9.6/4.2.4, Access Points firmware versions below v1.4.0, Switches firmwa... |
| CVE-2023-23952 | CRITICAL | 9.8 | 1.4% | Jun 1, 2023 | Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Command Injection vul... |
| CVE-2023-34257 | CRITICAL | 9.8 | 1.0% | May 31, 2023 | An issue was discovered in BMC Patrol through 23.1.00. The agent's configuration can be remotely modified (and, by defau... |
| CVE-2023-33735 | CRITICAL | 9.8 | 32.6% | May 31, 2023 | D-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping... |
| CVE-2023-33730 | CRITICAL | 9.8 | 1.2% | May 31, 2023 | Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now