2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-37570HIGH8.8This vulnerability exists in ESDS Emagic Data Center Management Suit due to non-expiry of session cookie. By reusing th...
CVE-2023-37569HIGH8.8This vulnerability exists in ESDS Emagic Data Center Management Suit due to lack of input sanitization in its Ping compo...
CVE-2023-3573HIGH8.8In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ...
CVE-2023-3571HIGH8.8In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ...
CVE-2023-3570HIGH8.8In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ...
CVE-2023-37491HIGH8.8The ACL (Access Control List) of SAP Message Server - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, RNL64...
CVE-2023-37486HIGH7.5Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an ...
CVE-2023-36923HIGH7.8SAP SQLA for PowerDesigner 17 bundled with SAP PowerDesigner 16.7 SP06 PL03, allows an attacker with local access to the...
CVE-2023-33993HIGH7.5B1i module of SAP Business One - version 10.0, application allows an authenticated user with deep knowledge to send craf...
CVE-2023-39528HIGH8.6PrestaShop is an open source e-commerce web application. Prior to version 8.1.1, the `displayAjaxEmailHTML` method can b...
CVE-2023-39523HIGH8.8ScanCode.io is a server to script and automate software composition analysis with ScanPipe pipelines. Prior to version 3...
CVE-2023-39520HIGH7.8Cryptomator encrypts data being stored on cloud infrastructure. The MSI installer provided on the homepage for Cryptomat...
CVE-2023-39550HIGH8.8Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overf...
CVE-2023-39349HIGH8.1Sentry is an error tracking and performance monitoring platform. Starting in version 22.1.0 and prior to version 23.7.2,...
CVE-2023-38926HIGH8.8Netgear EX6200 v1.0.3.94 was discovered to contain a buffer overflow via the wla_temp_ssid parameter at acosNvramConfig_...
CVE-2023-38925HIGH8.8Netgear DC112A 1.0.0.64, EX6200 1.0.3.94 and R6300v2 1.0.4.8 were discovered to contain a buffer overflow via the http_p...
CVE-2023-38922HIGH8.8Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overf...
CVE-2023-38921HIGH8.8Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the...
CVE-2023-38591HIGH8.8Netgear DG834Gv5 1.6.01.34 was discovered to contain multiple buffer overflows via the wla_ssid and wla_temp_ssid parame...
CVE-2023-38412HIGH8.8Netgear R6900P v1.3.3.154 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters a...
CVE-2023-36499HIGH8.8Netgear XR300 v1.0.3.78 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters at ...
CVE-2023-4199HIGH7.5A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. This aff...
CVE-2023-4012HIGH7.5ntpd will crash if the server is not NTS-enabled (no certificate) and it receives an NTS-enabled client request (mode 3)...
CVE-2023-32783HIGH7.5The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by cre...
CVE-2023-3365HIGH8.1The MultiParcels Shipping For WooCommerce WordPress plugin before 1.14.14 does not have authorisation when deleting ship...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now