2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49970 | CRITICAL | 9.8 | 0.8% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the subject parameter at /custome... |
| CVE-2023-49547 | CRITICAL | 9.8 | 1.1% | Mar 5, 2024 | Customer Support System v1 was discovered to contain a SQL injection vulnerability via the username parameter at /custom... |
| CVE-2023-43553 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE. |
| CVE-2023-43552 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Memory corruption while processing MBSSID beacon containing several subelement IE. |
| CVE-2023-43548 | CRITICAL | 9.8 | 0.3% | Mar 4, 2024 | Memory corruption while parsing qcp clip with invalid chunk data size. |
| CVE-2023-28582 | CRITICAL | 9.8 | 0.4% | Mar 4, 2024 | Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake. |
| CVE-2023-49543 | CRITICAL | 9.8 | 1.0% | Mar 1, 2024 | Incorrect access control in Book Store Management System v1 allows attackers to access unauthorized pages and execute ad... |
| CVE-2023-7244 | CRITICAL | 9.8 | 0.8% | Mar 1, 2024 | Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vuln... |
| CVE-2023-7243 | CRITICAL | 9.8 | 0.8% | Mar 1, 2024 | Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vul... |
| CVE-2023-51801 | CRITICAL | 9.8 | 1.2% | Feb 29, 2024 | SQL Injection vulnerability in the Simple Student Attendance System v.1.0 allows a remote attacker to execute arbitrary ... |
| CVE-2023-7110 | CRITICAL | 9.8 | 1.0% | Feb 29, 2024 | A vulnerability, which was classified as critical, has been found in code-projects Library Management System 2.0. This i... |
| CVE-2023-7109 | CRITICAL | 9.8 | 1.0% | Feb 29, 2024 | A vulnerability classified as critical was found in code-projects Library Management System 2.0. This vulnerability affe... |
| CVE-2023-7107 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | A vulnerability was found in code-projects E-Commerce Website 1.0. It has been rated as critical. Affected by this issue... |
| CVE-2023-7105 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | A vulnerability was found in code-projects E-Commerce Website 1.0. It has been classified as critical. Affected is an un... |
| CVE-2023-6881 | CRITICAL | 9.8 | 0.4% | Feb 29, 2024 | Possible buffer overflow in is_mount_point |
| CVE-2023-51773 | CRITICAL | 9.1 | 1.1% | Feb 29, 2024 | BACnet Stack before 1.3.2 has a decode function APDU buffer over-read in bacapp_decode_application_data in bacapp.c. |
| CVE-2023-49931 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | An issue was discovered in Couchbase Server before 7.2.4. SQL++ cURL calls to /diag/eval are not sufficiently restricted... |
| CVE-2023-49930 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | An issue was discovered in Couchbase Server before 7.2.4. cURL calls to /diag/eval are not sufficiently restricted. |
| CVE-2023-50737 | CRITICAL | 9.1 | 1.0% | Feb 28, 2024 | The SE menu contains information used by Lexmark to diagnose device errors. A vulnerability in one of the SE menu routin... |
| CVE-2023-50736 | CRITICAL | 9 | 0.8% | Feb 28, 2024 | A memory corruption vulnerability has been identified in PostScript interpreter in various Lexmark devices. The vulnerab... |
| CVE-2023-50735 | CRITICAL | 9 | 0.8% | Feb 28, 2024 | A heap corruption vulnerability has been identified in PostScript interpreter in various Lexmark devices. The vulnerabil... |
| CVE-2023-50734 | CRITICAL | 9 | 0.8% | Feb 28, 2024 | A buffer overflow vulnerability has been identified in PostScript interpreter in various Lexmark devices. The vulnerabil... |
| CVE-2023-51518 | CRITICAL | 9.8 | 1.2% | Feb 27, 2024 | Apache James prior to version 3.7.5 and 3.8.0 exposes a JMX endpoint on localhost subject to pre-authentication deserial... |
| CVE-2023-41506 | CRITICAL | 9.8 | 0.9% | Feb 27, 2024 | An arbitrary file upload vulnerability in the Update/Edit Student's Profile Picture function of Student Enrollment In PH... |
| CVE-2023-49959 | CRITICAL | 9.8 | 1.4% | Feb 26, 2024 | In Indo-Sol PROFINET-INspektor NT through 2.4.0, a command injection vulnerability in the gedtupdater service of the fir... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now