2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-37433HIGH8.1Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent...
CVE-2023-37432HIGH8.1Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent...
CVE-2023-37431HIGH8.1Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent...
CVE-2023-37430HIGH8.1Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent...
CVE-2023-37429HIGH8.1Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent...
CVE-2023-37428HIGH7.2A vulnerability in the EdgeConnect SD-WAN Orchestrator web-based management interface allows remote authenticated users ...
CVE-2023-37427HIGH7.2A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated re...
CVE-2023-37426HIGH7.5EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared stat...
CVE-2023-37424HIGH8.1A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated ...
CVE-2023-34853HIGH7.8Buffer Overflow vulnerability in Supermicro motherboard X12DPG-QR 1.4b allows local attackers to hijack control flow via...
CVE-2023-24517HIGH7.2Unrestricted Upload of File with Dangerous Type vulnerability in the Pandora FMS File Manager component, allows an attac...
CVE-2023-23564HIGH8.8An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to execute commands.
CVE-2023-25915HIGH8.8Due to improper input validation, an authenticated remote attacker could execute arbitrary commands on the target system...
CVE-2023-25914HIGH8.8Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server throu...
CVE-2023-25913HIGH7.5Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive infor...
CVE-2023-36787HIGH8.8Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-40352HIGH7.2McAfee Safe Connect before 2.16.1.126 may allow an adversary with system privileges to achieve privilege escalation by l...
CVE-2023-3604HIGH7.5The Change WP Admin Login WordPress plugin before 1.1.4 discloses the URL of the hidden login page when accessing a craf...
CVE-2023-39106HIGH8.8An issue in Nacos Group Nacos Spring Project v.1.1.1 and before allows a remote attacker to execute arbitrary code via t...
CVE-2023-38976HIGH7.5An issue in weaviate v.1.20.0 allows a remote attacker to cause a denial of service via the handleUnbatchedGraphQLReques...
CVE-2023-38836HIGH8.8File Upload vulnerability in BoidCMS v.2.0.0 allows a remote attacker to execute arbitrary code by adding a GIF header t...
CVE-2023-40735HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Cavo – Connecting for a Safer World BUTTERFL...
CVE-2023-38899HIGH7.8SQL injection vulnerability in berkaygediz O_Blog v.1.0 allows a local attacker to escalate privileges via the secure_fi...
CVE-2023-39748HIGH7.5An issue in the component /userRpm/NetworkCfgRpm of TP-Link TL-WR1041N V2 allows attackers to cause a Denial of Service ...
CVE-2023-39745HIGH7.5TP-Link TL-WR940N V2, TP-Link TL-WR941ND V5 and TP-Link TL-WR841N V8 were discovered to contain a buffer overflow via th...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now