2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-46096MEDIUM6.5A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does ...
CVE-2023-44322MEDIUM5.9A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM...
CVE-2023-44321MEDIUM6.5Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web ...
CVE-2023-44320MEDIUM4.3A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDC...
CVE-2023-44319MEDIUM4.9A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM...
CVE-2023-44318MEDIUM4.9Affected devices use a hardcoded key to obfuscate the configuration backup that an administrator can export from the dev...
CVE-2023-43505MEDIUM6.5A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in SM...
CVE-2023-45881MEDIUM6.1GibbonEdu Gibbon through version 25.0.0 allows /modules/Planner/resources_addQuick_ajaxProcess.php file upload with resu...
CVE-2023-45879MEDIUM5.4GibbonEdu Gibbon version 25.0.0 allows HTML Injection via an IFRAME element to the Messager component.
CVE-2023-43901MEDIUM5.9Incorrect access control in the AdHoc User creation form of EMSigner v2.8.7 allows unauthenticated attackers to arbitrar...
CVE-2023-43900MEDIUM6.5Insecure Direct Object References (IDOR) in EMSigner v2.8.7 allow attackers to gain unauthorized access to application c...
CVE-2023-6006MEDIUM6.7This vulnerability potentially allows local attackers to escalate privileges on affected installations of PaperCut NG. A...
CVE-2023-42327MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Netgate pfSense v.2.7.0 allows a remote attacker to gain privileges via a cr...
CVE-2023-42325MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Netgate pfSense v.2.7.0 allows a remote attacker to gain privileges via a cr...
CVE-2023-31754MEDIUM4.8Optimizely CMS UI before v12.16.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Admin pan...
CVE-2023-46446MEDIUM6.8An issue in AsyncSSH before 2.14.1 allows attackers to control the remote end of an SSH client session via packet inject...
CVE-2023-46445MEDIUM5.9An issue in AsyncSSH before 2.14.1 allows attackers to control the extension info message (RFC 8308) via a man-in-the-mi...
CVE-2023-47628MEDIUM4.8DataHub is an open-source metadata platform. DataHub Frontend's sessions are configured using Play Framework's default s...
CVE-2023-42480MEDIUM5.3The unauthenticated attacker in NetWeaver AS Java Logon application - version 7.50, can brute force the login functional...
CVE-2023-41366MEDIUM5.3Under certain condition SAP NetWeaver Application Server ABAP - versions KERNEL 722, KERNEL 7.53, KERNEL 7.77, KERNEL 7....
CVE-2023-47684MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ThemePunch OHG Essential Grid plugin <= 3.1.0 versions.
CVE-2023-47680MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Qode Interactive Qi Addons For Elementor plugin ...
CVE-2023-47673MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Stefano Ottolenghi Post Pay Counter plugin <= 2.784 versio...
CVE-2023-47665MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in edward_plainview Plainview Protect Passwords plugin <= 1.4...
CVE-2023-47662MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GoldBroker.Com Live Gold Price & Silver Price Charts W...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now