2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6493 | MEDIUM | 4.3 | 0.2% | Jan 5, 2024 | The Depicter Slider – Responsive Image Slider, Video Slider & Post Slider plugin for WordPress is vulnerable to Cross-Si... |
| CVE-2023-41782 | MEDIUM | 4.8 | 0.2% | Jan 5, 2024 | There is a DLL hijacking vulnerability in ZTE ZXCLOUD iRAI, an attacker could place a fake DLL file in a specific direc... |
| CVE-2023-5619 | — | — | — | Jan 4, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-6530. Reason: This candidate is a r... |
| CVE-2023-5442 | — | — | — | Jan 4, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-6991. Reason: This candidate is a ... |
| CVE-2023-51812 | CRITICAL | 9.8 | 1.1% | Jan 4, 2024 | Tenda AX3 v16.03.12.11 was discovered to contain a remote code execution (RCE) vulnerability via the list parameter at /... |
| CVE-2023-51154 | CRITICAL | 9.8 | 0.6% | Jan 4, 2024 | Jizhicms v2.5 was discovered to contain an arbitrary file download vulnerability via the component /admin/c/PluginsContr... |
| CVE-2023-6270 | HIGH | 7 | 0.4% | Jan 4, 2024 | A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly up... |
| CVE-2023-6551 | MEDIUM | 5.4 | 0.4% | Jan 4, 2024 | As a simple library, class.upload.php does not perform an in-depth check on uploaded files, allowing a stored XSS vulner... |
| CVE-2023-50867 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of... |
| CVE-2023-50866 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of... |
| CVE-2023-50865 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'city' parameter of the... |
| CVE-2023-50864 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelId' parameter of ... |
| CVE-2023-50863 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelIDHidden' paramet... |
| CVE-2023-50862 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelIDHidden' paramet... |
| CVE-2023-50760 | HIGH | 8.8 | 1.2% | Jan 4, 2024 | Online Notice Board System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'f' parameter of user/upda... |
| CVE-2023-3726 | MEDIUM | 6.9 | 0.5% | Jan 4, 2024 | OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting. |
| CVE-2023-50753 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'dd' parame... |
| CVE-2023-50752 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'e' paramet... |
| CVE-2023-50743 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'dd' parame... |
| CVE-2023-49666 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'custmer_details' par... |
| CVE-2023-49665 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'quantity[]' paramete... |
| CVE-2023-49658 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'bank_details' parame... |
| CVE-2023-49639 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'customer_details' pa... |
| CVE-2023-49633 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'buyer_address' param... |
| CVE-2023-49625 | CRITICAL | 9.8 | 0.7% | Jan 4, 2024 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now