2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6232 | CRITICAL | 9.8 | 1.5% | Feb 6, 2024 | Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction... |
| CVE-2023-6231 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in WSD probe request process of Office Multifunction Printers and Laser Printers(*) which may allow an a... |
| CVE-2023-6230 | CRITICAL | 9.8 | 1.5% | Feb 6, 2024 | Buffer overflow in the Address Book password process in authentication of Mobile Device Function of Office Multifunction... |
| CVE-2023-6229 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in CPCA PDL Resource Download process of Office Multifunction Printers and Laser Printers(*) which may a... |
| CVE-2023-47889 | HIGH | 7.8 | 0.3% | Feb 6, 2024 | The Android application BINHDRM26 com.bdrm.superreboot 1.0.3, exposes several critical actions through its exported broa... |
| CVE-2023-47353 | HIGH | 8.8 | 0.3% | Feb 6, 2024 | An issue in the com.oneed.dvr.service.DownloadFirmwareService component of IMOU GO v1.0.11 allows attackers to force the... |
| CVE-2023-47022 | MEDIUM | 6.5 | 0.3% | Feb 6, 2024 | Insecure Direct Object Reference in NCR Terminal Handler v.1.5.1 allows an unprivileged user to edit the audit logs for ... |
| CVE-2023-46360 | HIGH | 8.8 | 2.8% | Feb 6, 2024 | Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier is vulnerable to Execution with Unnecessary Privileges. |
| CVE-2023-46359 | CRITICAL | 9.8 | 80.9% | Feb 6, 2024 | An OS command injection vulnerability in Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier, may allow an unauthen... |
| CVE-2023-47354 | HIGH | 7.8 | 0.3% | Feb 6, 2024 | An issue in the PowerOffWidgetReceiver function of Super Reboot (Root) Recovery v1.0.3 allows attackers to arbitrarily r... |
| CVE-2023-7029 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The WordPress Button Plugin MaxButtons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin'... |
| CVE-2023-7014 | HIGH | 7.5 | 0.7% | Feb 5, 2024 | The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is vulnerable to Sensitive In... |
| CVE-2023-6996 | HIGH | 8.8 | 1.1% | Feb 5, 2024 | The Display custom fields in the frontend – Post and User Profile Fields plugin for WordPress is vulnerable to Code Inje... |
| CVE-2023-6989 | CRITICAL | 9.8 | 56.6% | Feb 5, 2024 | The Shield Security – Smart Bot Blocking & Intrusion Prevention Security plugin for WordPress is vulnerable to Local Fil... |
| CVE-2023-6985 | HIGH | 8.8 | 1.4% | Feb 5, 2024 | The 10Web AI Assistant – AI content writing assistant plugin for WordPress is vulnerable to unauthorized modification of... |
| CVE-2023-6983 | MEDIUM | 4.3 | 0.5% | Feb 5, 2024 | The Display custom fields in the frontend – Post and User Profile Fields plugin for WordPress is vulnerable to Insecure ... |
| CVE-2023-6982 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The Display custom fields in the frontend – Post and User Profile Fields plugin for WordPress is vulnerable to Stored Cr... |
| CVE-2023-6963 | MEDIUM | 5.3 | 0.5% | Feb 5, 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 2.0... |
| CVE-2023-6959 | MEDIUM | 4.3 | 0.4% | Feb 5, 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c... |
| CVE-2023-6953 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The PDF Generator For Fluent Forms – The Contact Form Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scr... |
| CVE-2023-6933 | HIGH | 8.8 | 68.0% | Feb 5, 2024 | The Better Search Replace plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includin... |
| CVE-2023-6925 | HIGH | 7.2 | 1.5% | Feb 5, 2024 | The Unlimited Addons for WPBakery Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to insuf... |
| CVE-2023-6884 | MEDIUM | 5.4 | 0.6% | Feb 5, 2024 | This plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode in all versions up to,... |
| CVE-2023-6846 | HIGH | 8.8 | 15.9% | Feb 5, 2024 | The File Manager Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 8... |
| CVE-2023-6808 | MEDIUM | 5.4 | 0.5% | Feb 5, 2024 | The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Stored Cross-Site Script... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now