2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-51730MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51729MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51728MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51727MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51726MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51725MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51724MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51723MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51722MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51721MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51720MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-51719MEDIUM5.4This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied in...
CVE-2023-52069MEDIUM5.4kodbox v1.49.04 was discovered to contain a cross-site scripting (XSS) vulnerability via the URL parameter.
CVE-2023-46952MEDIUM6.1Cross Site Scripting vulnerability in ABO.CMS v.5.9.3 allows an attacker to execute arbitrary code via a crafted payload...
CVE-2023-36235MEDIUM6.5An issue in webkul qloapps before v1.6.0 allows an attacker to obtain sensitive information via the id_order parameter.
CVE-2023-25295MEDIUM6.1A Cross Site Scripting (XSS) vulnerability in evewa3ajax.php in GRUEN eVEWA3 Community 31 through 53 allows attackers to...
CVE-2023-49515MEDIUM4.6Insecure Permissiosn vulnerability in TP Link TC70 and C200 WIFI Camera v.3 firmware v.1.3.4 and fixed in v.1.3.11 allow...
CVE-2023-51807MEDIUM5.4Cross Site Scripting vulnerability in OFCMS v.1.14 allows a remote attacker to obtain sensitive information via a crafte...
CVE-2023-52068MEDIUM6.1kodbox v1.43 was discovered to contain a cross-site scripting (XSS) vulnerability via the operation and login logs.
CVE-2023-52042CRITICAL9.8An issue discovered in sub_4117F8 function in TOTOLINK X6000R V9.4.0cu.852_B20230719 allows attackers to run arbitrary c...
CVE-2023-39691CRITICAL9.8An issue discovered in kodbox through 1.43 allows attackers to arbitrarily add Administrator accounts via crafted GET re...
CVE-2023-36236MEDIUM4.8Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via...
CVE-2023-21901HIGH7.4Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic...
CVE-2023-48926MEDIUM5.3An issue in 202 ecommerce Advanced Loyalty Program: Loyalty Points before v2.3.4 for PrestaShop allows unauthenticated a...
CVE-2023-6336HIGH7.8Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows Us...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now