2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-20160CRITICAL9.8Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-20159CRITICAL9.8Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-20158CRITICAL9.8Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-20157CRITICAL9.8Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-20156CRITICAL9.8Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-31729CRITICAL9.8TOTOLINK A3300R v17.0.0cu.557 is vulnerable to Command Injection via /cgi-bin/cstecgi.cgi.
CVE-2023-29985CRITICAL9.8Sourcecodester Student Study Center Desk Management System v1.0 admin\reports\index.php#date_from has a SQL Injection vu...
CVE-2023-2319CRITICAL9.8It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux ...
CVE-2023-2780CRITICAL9.8Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.
CVE-2023-30191CRITICAL9.8PrestaShop cdesigner < 3.1.9 is vulnerable to SQL Injection via CdesignerTraitementModuleFrontController::initContent().
CVE-2023-2776CRITICAL9.8A vulnerability was found in code-projects Simple Photo Gallery 1.0. It has been declared as critical. This vulnerabilit...
CVE-2023-2774CRITICAL9.8A vulnerability was found in code-projects Bus Dispatch and Information System 1.0 and classified as critical. Affected ...
CVE-2023-31903CRITICAL9.8GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by u...
CVE-2023-31902CRITICAL9.8RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE).
CVE-2023-31703CRITICAL9Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allo...
CVE-2023-30189CRITICAL9.8Prestashop posstaticblocks <= 1.0.0 is vulnerable to SQL Injection via posstaticblocks::getPosCurrentHook().
CVE-2023-27742CRITICAL9.8IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.
CVE-2023-31890CRITICAL9.8An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXML...
CVE-2023-31857CRITICAL9.8Sourcecodester Online Computer and Laptop Store 1.0 allows unrestricted file upload and can lead to remote code executio...
CVE-2023-31856CRITICAL9.8A command injection vulnerability in the hostTime parameter in the function NTPSyncWithHostof TOTOLINK CP300+ V5.2cu.759...
CVE-2023-31587CRITICAL9.8Tenda AC5 router V15.03.06.28 was discovered to contain a remote code execution (RCE) vulnerability via the Mac paramete...
CVE-2023-31519CRITICAL9.8Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the email parameter at login...
CVE-2023-2738CRITICAL9.8A vulnerability classified as critical has been found in Tongda OA 11.10. This affects the function actionGetdata of the...
CVE-2023-2499CRITICAL9.8The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2....
CVE-2023-32956CRITICAL9.8Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in CGI componen...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now