2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-37433 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37432 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37431 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37430 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37429 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37428 | HIGH | 7.2 | 0.8% | Aug 22, 2023 | A vulnerability in the EdgeConnect SD-WAN Orchestrator web-based management interface allows remote authenticated users ... |
| CVE-2023-37427 | HIGH | 7.2 | 0.9% | Aug 22, 2023 | A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated re... |
| CVE-2023-37426 | HIGH | 7.5 | 0.4% | Aug 22, 2023 | EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared stat... |
| CVE-2023-37424 | HIGH | 8.1 | 0.6% | Aug 22, 2023 | A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated ... |
| CVE-2023-34853 | HIGH | 7.8 | 0.4% | Aug 22, 2023 | Buffer Overflow vulnerability in Supermicro motherboard X12DPG-QR 1.4b allows local attackers to hijack control flow via... |
| CVE-2023-24517 | HIGH | 7.2 | 0.9% | Aug 22, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in the Pandora FMS File Manager component, allows an attac... |
| CVE-2023-23564 | HIGH | 8.8 | 1.8% | Aug 22, 2023 | An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to execute commands. |
| CVE-2023-25915 | HIGH | 8.8 | 0.8% | Aug 21, 2023 | Due to improper input validation, an authenticated remote attacker could execute arbitrary commands on the target system... |
| CVE-2023-25914 | HIGH | 8.8 | 0.7% | Aug 21, 2023 | Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server throu... |
| CVE-2023-25913 | HIGH | 7.5 | 0.5% | Aug 21, 2023 | Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive infor... |
| CVE-2023-36787 | HIGH | 8.8 | 1.8% | Aug 21, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-40352 | HIGH | 7.2 | 0.7% | Aug 21, 2023 | McAfee Safe Connect before 2.16.1.126 may allow an adversary with system privileges to achieve privilege escalation by l... |
| CVE-2023-3604 | HIGH | 7.5 | 0.7% | Aug 21, 2023 | The Change WP Admin Login WordPress plugin before 1.1.4 discloses the URL of the hidden login page when accessing a craf... |
| CVE-2023-39106 | HIGH | 8.8 | 1.1% | Aug 21, 2023 | An issue in Nacos Group Nacos Spring Project v.1.1.1 and before allows a remote attacker to execute arbitrary code via t... |
| CVE-2023-38976 | HIGH | 7.5 | 1.7% | Aug 21, 2023 | An issue in weaviate v.1.20.0 allows a remote attacker to cause a denial of service via the handleUnbatchedGraphQLReques... |
| CVE-2023-38836 | HIGH | 8.8 | 73.0% | Aug 21, 2023 | File Upload vulnerability in BoidCMS v.2.0.0 allows a remote attacker to execute arbitrary code by adding a GIF header t... |
| CVE-2023-40735 | HIGH | 7.5 | 0.6% | Aug 21, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Cavo – Connecting for a Safer World BUTTERFL... |
| CVE-2023-38899 | HIGH | 7.8 | 0.4% | Aug 21, 2023 | SQL injection vulnerability in berkaygediz O_Blog v.1.0 allows a local attacker to escalate privileges via the secure_fi... |
| CVE-2023-39748 | HIGH | 7.5 | 0.6% | Aug 21, 2023 | An issue in the component /userRpm/NetworkCfgRpm of TP-Link TL-WR1041N V2 allows attackers to cause a Denial of Service ... |
| CVE-2023-39745 | HIGH | 7.5 | 0.6% | Aug 21, 2023 | TP-Link TL-WR940N V2, TP-Link TL-WR941ND V5 and TP-Link TL-WR841N V8 were discovered to contain a buffer overflow via th... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now