2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40699 | HIGH | 7.5 | 1.1% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper inp... |
| CVE-2023-38268 | HIGH | 8.8 | 0.3% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to exec... |
| CVE-2023-48893 | HIGH | 8.8 | 0.7% | Dec 1, 2023 | SLiMS (aka SENAYAN Library Management System) through 9.6.1 allows admin/modules/reporting/customs/staff_act.php SQL Inj... |
| CVE-2023-48813 | HIGH | 8.8 | 0.7% | Dec 1, 2023 | Senayan Library Management Systems (Slims) 9 Bulian v9.6.1 is vulnerable to SQL Injection via admin/modules/reporting/cu... |
| CVE-2023-4518 | HIGH | 7.5 | 0.7% | Dec 1, 2023 | A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed ... |
| CVE-2023-45168 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout comman... |
| CVE-2023-5637 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Read Sensitive Strin... |
| CVE-2023-5635 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | Improper Protection for Outbound Error Messages and Alert Signals vulnerability in ArslanSoft Education Portal allows Ac... |
| CVE-2023-6449 | HIGH | 7.2 | 1.7% | Dec 1, 2023 | The Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation... |
| CVE-2023-5427 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge... |
| CVE-2023-5995 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 16.2 before 16.4.3, all versions starting... |
| CVE-2023-5226 | HIGH | 7.5 | 0.5% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5... |
| CVE-2023-45253 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | An issue was discovered in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, allows attackers... |
| CVE-2023-45252 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the i... |
| CVE-2023-48016 | HIGH | 7.5 | 0.7% | Dec 1, 2023 | Restaurant Table Booking System V1.0 is vulnerable to SQL Injection in rtbs/admin/index.php via the username parameter. |
| CVE-2023-47307 | HIGH | 7.5 | 0.8% | Nov 30, 2023 | Buffer Overflow vulnerability in /apply.cgi in Shenzhen Libituo Technology Co., Ltd LBT-T300-T310 v2.2.2.6 allows attack... |
| CVE-2023-47279 | HIGH | 7.5 | 1.1% | Nov 30, 2023 | In Delta Electronics InfraSuite Device Master v.1.0.7, A vulnerability exists that allows an unauthenticated attacker to... |
| CVE-2023-46956 | HIGH | 7.2 | 1.2% | Nov 30, 2023 | SQL injection vulnerability in Packers and Movers Management System v.1.0 allows a remote attacker to execute arbitrary ... |
| CVE-2023-46389 | HIGH | 7.5 | 2.0% | Nov 30, 2023 | LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via regi... |
| CVE-2023-46388 | HIGH | 7.5 | 1.5% | Nov 30, 2023 | LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Insecure Permissions via dpal_con... |
| CVE-2023-46387 | HIGH | 7.5 | 2.0% | Nov 30, 2023 | LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via dpal... |
| CVE-2023-46386 | HIGH | 7.5 | 1.6% | Nov 30, 2023 | LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Insecure Permissions via registry... |
| CVE-2023-46385 | HIGH | 7.5 | 0.8% | Nov 30, 2023 | LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. An admin credential is p... |
| CVE-2023-46384 | HIGH | 7.5 | 1.5% | Nov 30, 2023 | LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. Cleartext storage of cre... |
| CVE-2023-46383 | HIGH | 7.5 | 1.4% | Nov 30, 2023 | LOYTEC electronics GmbH LINX Configurator (all versions) uses HTTP Basic Authentication, which transmits usernames and p... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now