2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-37570 | HIGH | 8.8 | 0.5% | Aug 8, 2023 | This vulnerability exists in ESDS Emagic Data Center Management Suit due to non-expiry of session cookie. By reusing th... |
| CVE-2023-37569 | HIGH | 8.8 | 24.0% | Aug 8, 2023 | This vulnerability exists in ESDS Emagic Data Center Management Suit due to lack of input sanitization in its Ping compo... |
| CVE-2023-3573 | HIGH | 8.8 | 0.9% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-3571 | HIGH | 8.8 | 0.4% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-3570 | HIGH | 8.8 | 0.9% | Aug 8, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges may use ... |
| CVE-2023-37491 | HIGH | 8.8 | 0.4% | Aug 8, 2023 | The ACL (Access Control List) of SAP Message Server - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, RNL64... |
| CVE-2023-37486 | HIGH | 7.5 | 0.4% | Aug 8, 2023 | Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an ... |
| CVE-2023-36923 | HIGH | 7.8 | 0.2% | Aug 8, 2023 | SAP SQLA for PowerDesigner 17 bundled with SAP PowerDesigner 16.7 SP06 PL03, allows an attacker with local access to the... |
| CVE-2023-33993 | HIGH | 7.5 | 0.5% | Aug 8, 2023 | B1i module of SAP Business One - version 10.0, application allows an authenticated user with deep knowledge to send craf... |
| CVE-2023-39528 | HIGH | 8.6 | 0.6% | Aug 7, 2023 | PrestaShop is an open source e-commerce web application. Prior to version 8.1.1, the `displayAjaxEmailHTML` method can b... |
| CVE-2023-39523 | HIGH | 8.8 | 2.4% | Aug 7, 2023 | ScanCode.io is a server to script and automate software composition analysis with ScanPipe pipelines. Prior to version 3... |
| CVE-2023-39520 | HIGH | 7.8 | 0.3% | Aug 7, 2023 | Cryptomator encrypts data being stored on cloud infrastructure. The MSI installer provided on the homepage for Cryptomat... |
| CVE-2023-39550 | HIGH | 8.8 | 0.9% | Aug 7, 2023 | Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overf... |
| CVE-2023-39349 | HIGH | 8.1 | 0.8% | Aug 7, 2023 | Sentry is an error tracking and performance monitoring platform. Starting in version 22.1.0 and prior to version 23.7.2,... |
| CVE-2023-38926 | HIGH | 8.8 | 0.8% | Aug 7, 2023 | Netgear EX6200 v1.0.3.94 was discovered to contain a buffer overflow via the wla_temp_ssid parameter at acosNvramConfig_... |
| CVE-2023-38925 | HIGH | 8.8 | 14.6% | Aug 7, 2023 | Netgear DC112A 1.0.0.64, EX6200 1.0.3.94 and R6300v2 1.0.4.8 were discovered to contain a buffer overflow via the http_p... |
| CVE-2023-38922 | HIGH | 8.8 | 0.6% | Aug 7, 2023 | Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overf... |
| CVE-2023-38921 | HIGH | 8.8 | 1.4% | Aug 7, 2023 | Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the... |
| CVE-2023-38591 | HIGH | 8.8 | 0.8% | Aug 7, 2023 | Netgear DG834Gv5 1.6.01.34 was discovered to contain multiple buffer overflows via the wla_ssid and wla_temp_ssid parame... |
| CVE-2023-38412 | HIGH | 8.8 | 0.8% | Aug 7, 2023 | Netgear R6900P v1.3.3.154 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters a... |
| CVE-2023-36499 | HIGH | 8.8 | 0.8% | Aug 7, 2023 | Netgear XR300 v1.0.3.78 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters at ... |
| CVE-2023-4199 | HIGH | 7.5 | 0.5% | Aug 7, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. This aff... |
| CVE-2023-4012 | HIGH | 7.5 | 0.4% | Aug 7, 2023 | ntpd will crash if the server is not NTS-enabled (no certificate) and it receives an NTS-enabled client request (mode 3)... |
| CVE-2023-32783 | HIGH | 7.5 | 3.2% | Aug 7, 2023 | The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by cre... |
| CVE-2023-3365 | HIGH | 8.1 | 0.6% | Aug 7, 2023 | The MultiParcels Shipping For WooCommerce WordPress plugin before 1.14.14 does not have authorisation when deleting ship... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now