2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-49981HIGH7.5A directory listing vulnerability in School Fees Management System v1.0 allows attackers to list directories and sensiti...
CVE-2023-49980HIGH7.5A directory listing vulnerability in Best Student Result Management System v1.0 allows attackers to list directories and...
CVE-2023-49979HIGH7.5A directory listing vulnerability in Customer Support System v1 allows attackers to list directories and sensitive files...
CVE-2023-49978HIGH8.8Incorrect access control in Customer Support System v1 allows non-administrator users to access administrative pages and...
CVE-2023-38825MEDIUM6.5SQL injection vulnerability in Vanderbilt REDCap before v.13.8.0 allows a remote attacker to obtain sensitive informatio...
CVE-2023-35899CRITICAL9.8IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21....
CVE-2023-45177MEDIUM5.3IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS and 9.3 CD is vulnerable to a denial-of-service attack due to an error within ...
CVE-2023-51445MEDIUM4.8GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A store...
CVE-2023-50967HIGH7.5latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PB...
CVE-2023-51444HIGH7.2GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. An arbi...
CVE-2023-41877HIGH7.2GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A path ...
CVE-2023-41038HIGH7.5Firebird is a relational database. Versions 4.0.0 through 4.0.3 and version 5.0 beta1 are vulnerable to a server crash w...
CVE-2023-35888MEDIUM5.9IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive information, caused by the failu...
CVE-2023-52229MEDIUM6.5Missing Authorization vulnerability in Save as PDF plugin by Pdfcrowd Word Replacer Pro.This issue affects Word Replacer...
CVE-2023-46841MEDIUM6.5Recent x86 CPUs offer functionality named Control-flow Enforcement Technology (CET). A sub-feature of this are Shadow S...
CVE-2023-46840MEDIUM4.1Incorrect placement of a preprocessor directive in source code results in logic that doesn't operate as intended when su...
CVE-2023-46839MEDIUM5.3PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate re...
CVE-2023-7246MEDIUM5.4The System Dashboard WordPress plugin before 2.8.10 does not sanitize and escape some parameters, which could allow admi...
CVE-2023-50811MEDIUM6.5An issue discovered in SELESTA Visual Access Manager 4.38.6 allows attackers to modify the “computer” POST parameter rel...
CVE-2023-4426Rejected reason: **REJECT** Not a valid security issue - vendor unable to replicate.
CVE-2023-44092CRITICAL9.1Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Pandora FMS ...
CVE-2023-44091CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on all...
CVE-2023-44090MEDIUM6.4 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on al...
CVE-2023-42920HIGH7.8Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and Claris Pro.app versions on m...
CVE-2023-41793MEDIUM6.5: Path Traversal vulnerability in Pandora FMS on all allows Path Traversal. This vulnerability allowed changing director...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now