2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23453 | CRITICAL | 9.8 | 1.1% | Feb 20, 2023 | Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged... |
| CVE-2023-23452 | CRITICAL | 9.8 | 1.1% | Feb 20, 2023 | Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged... |
| CVE-2023-25805 | CRITICAL | 9.8 | 1.6% | Feb 20, 2023 | versionn, software for changing version information across multiple files, has a command injection vulnerability in all ... |
| CVE-2023-25613 | CRITICAL | 9.8 | 1.5% | Feb 20, 2023 | An LDAP Injection vulnerability exists in the LdapIdentityBackend of Apache Kerby before 2.0.3. |
| CVE-2023-26093 | CRITICAL | 9.8 | 0.9% | Feb 20, 2023 | Liima before 1.17.28 allows Hibernate query language (HQL) injection, related to colToSort in the deployment filter. |
| CVE-2023-26092 | CRITICAL | 9.8 | 0.9% | Feb 20, 2023 | Liima before 1.17.28 allows server-side template injection. |
| CVE-2023-0918 | CRITICAL | 9.8 | 0.7% | Feb 19, 2023 | A vulnerability has been found in codeprojects Pharmacy Management System 1.0 and classified as critical. This vulnerabi... |
| CVE-2023-0917 | CRITICAL | 9.8 | 0.9% | Feb 19, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Simple Customer Relationship Management S... |
| CVE-2023-0910 | CRITICAL | 9.8 | 0.5% | Feb 18, 2023 | A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne... |
| CVE-2023-0906 | CRITICAL | 9.8 | 0.7% | Feb 18, 2023 | A vulnerability classified as critical was found in SourceCodester Online Pizza Ordering System 1.0. Affected by this vu... |
| CVE-2023-23064 | CRITICAL | 9.8 | 0.7% | Feb 17, 2023 | TOTOLINK A720R V4.1.5cu.532_ B20210610 is vulnerable to Incorrect Access Control. |
| CVE-2023-23279 | CRITICAL | 9.8 | 0.9% | Feb 17, 2023 | Canteen Management System 1.0 is vulnerable to SQL Injection via /php_action/getOrderReport.php. |
| CVE-2023-0883 | CRITICAL | 9.8 | 0.6% | Feb 17, 2023 | A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne... |
| CVE-2023-24221 | CRITICAL | 9.8 | 0.8% | Feb 17, 2023 | LuckyframeWEB v3.5 was discovered to contain a SQL injection vulnerability via the dataScope parameter at /system/DeptMa... |
| CVE-2023-24220 | CRITICAL | 9.8 | 0.8% | Feb 17, 2023 | LuckyframeWEB v3.5 was discovered to contain a SQL injection vulnerability via the dataScope parameter at /system/RoleMa... |
| CVE-2023-24219 | CRITICAL | 9.8 | 0.8% | Feb 17, 2023 | LuckyframeWEB v3.5 was discovered to contain a SQL injection vulnerability via the dataScope parameter at /system/UserMa... |
| CVE-2023-24238 | CRITICAL | 9.8 | 1.9% | Feb 16, 2023 | TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the city paramet... |
| CVE-2023-24236 | CRITICAL | 9.8 | 1.9% | Feb 16, 2023 | TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the province par... |
| CVE-2023-22578 | CRITICAL | 9.8 | 0.8% | Feb 16, 2023 | Due to improper artibute filtering in the sequalize js library, can a attacker peform SQL injections. |
| CVE-2023-0849 | CRITICAL | 9.8 | 2.8% | Feb 15, 2023 | A vulnerability has been found in Netgear WNDR3700v2 1.0.1.14 and classified as critical. This vulnerability affects unk... |
| CVE-2023-22855 | CRITICAL | 9.8 | 14.8% | Feb 15, 2023 | Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 808... |
| CVE-2023-23462 | CRITICAL | 9.8 | 0.7% | Feb 15, 2023 | Libpeconv – integer overflow, before commit 75b1565 (30/11/2022). |
| CVE-2023-23461 | CRITICAL | 9.8 | 0.7% | Feb 15, 2023 | Libpeconv – access violation, before commit b076013 (30/11/2022). |
| CVE-2023-23460 | CRITICAL | 9.8 | 0.7% | Feb 15, 2023 | Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass. |
| CVE-2023-23459 | CRITICAL | 9.8 | 0.9% | Feb 15, 2023 | Priority Windows may allow Command Execution via SQL Injection using an unspecified method. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now