2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49981 | HIGH | 7.5 | 0.7% | Mar 21, 2024 | A directory listing vulnerability in School Fees Management System v1.0 allows attackers to list directories and sensiti... |
| CVE-2023-49980 | HIGH | 7.5 | 0.7% | Mar 21, 2024 | A directory listing vulnerability in Best Student Result Management System v1.0 allows attackers to list directories and... |
| CVE-2023-49979 | HIGH | 7.5 | 0.7% | Mar 21, 2024 | A directory listing vulnerability in Customer Support System v1 allows attackers to list directories and sensitive files... |
| CVE-2023-49978 | HIGH | 8.8 | 0.8% | Mar 21, 2024 | Incorrect access control in Customer Support System v1 allows non-administrator users to access administrative pages and... |
| CVE-2023-38825 | MEDIUM | 6.5 | 1.0% | Mar 21, 2024 | SQL injection vulnerability in Vanderbilt REDCap before v.13.8.0 allows a remote attacker to obtain sensitive informatio... |
| CVE-2023-35899 | CRITICAL | 9.8 | 0.6% | Mar 21, 2024 | IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.... |
| CVE-2023-45177 | MEDIUM | 5.3 | 0.6% | Mar 20, 2024 | IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS and 9.3 CD is vulnerable to a denial-of-service attack due to an error within ... |
| CVE-2023-51445 | MEDIUM | 4.8 | 0.5% | Mar 20, 2024 | GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A store... |
| CVE-2023-50967 | HIGH | 7.5 | 1.4% | Mar 20, 2024 | latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PB... |
| CVE-2023-51444 | HIGH | 7.2 | 1.9% | Mar 20, 2024 | GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. An arbi... |
| CVE-2023-41877 | HIGH | 7.2 | 0.8% | Mar 20, 2024 | GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. A path ... |
| CVE-2023-41038 | HIGH | 7.5 | 0.7% | Mar 20, 2024 | Firebird is a relational database. Versions 4.0.0 through 4.0.3 and version 5.0 beta1 are vulnerable to a server crash w... |
| CVE-2023-35888 | MEDIUM | 5.9 | 0.3% | Mar 20, 2024 | IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive information, caused by the failu... |
| CVE-2023-52229 | MEDIUM | 6.5 | 0.5% | Mar 20, 2024 | Missing Authorization vulnerability in Save as PDF plugin by Pdfcrowd Word Replacer Pro.This issue affects Word Replacer... |
| CVE-2023-46841 | MEDIUM | 6.5 | 0.3% | Mar 20, 2024 | Recent x86 CPUs offer functionality named Control-flow Enforcement Technology (CET). A sub-feature of this are Shadow S... |
| CVE-2023-46840 | MEDIUM | 4.1 | 0.3% | Mar 20, 2024 | Incorrect placement of a preprocessor directive in source code results in logic that doesn't operate as intended when su... |
| CVE-2023-46839 | MEDIUM | 5.3 | 0.8% | Mar 20, 2024 | PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate re... |
| CVE-2023-7246 | MEDIUM | 5.4 | 0.8% | Mar 20, 2024 | The System Dashboard WordPress plugin before 2.8.10 does not sanitize and escape some parameters, which could allow admi... |
| CVE-2023-50811 | MEDIUM | 6.5 | 0.5% | Mar 19, 2024 | An issue discovered in SELESTA Visual Access Manager 4.38.6 allows attackers to modify the “computer” POST parameter rel... |
| CVE-2023-4426 | — | — | — | Mar 19, 2024 | Rejected reason: **REJECT** Not a valid security issue - vendor unable to replicate. |
| CVE-2023-44092 | CRITICAL | 9.1 | 0.8% | Mar 19, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Pandora FMS ... |
| CVE-2023-44091 | CRITICAL | 9.8 | 0.5% | Mar 19, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on all... |
| CVE-2023-44090 | MEDIUM | 6.4 | 0.3% | Mar 19, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on al... |
| CVE-2023-42920 | HIGH | 7.8 | 0.2% | Mar 19, 2024 | Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and Claris Pro.app versions on m... |
| CVE-2023-41793 | MEDIUM | 6.5 | 0.4% | Mar 19, 2024 | : Path Traversal vulnerability in Pandora FMS on all allows Path Traversal. This vulnerability allowed changing director... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now