2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38733 | MEDIUM | 4.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7.1 and 23.0.0 through 23.0.1 server could allow an authenticated us... |
| CVE-2023-4475 | MEDIUM | 5.5 | 0.2% | Aug 22, 2023 | An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file r... |
| CVE-2023-4212 | MEDIUM | 6.8 | 1.2% | Aug 22, 2023 | A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to ... |
| CVE-2023-3699 | MEDIUM | 5.5 | 0.1% | Aug 22, 2023 | An Improper Privilege Management vulnerability was found in ASUSTOR Data Master (ADM) allows an unprivileged local users... |
| CVE-2023-39599 | MEDIUM | 5.4 | 0.5% | Aug 22, 2023 | Cross-Site Scripting (XSS) vulnerability in CSZ CMS v.1.3.0 allows attackers to execute arbitrary code via a crafted pay... |
| CVE-2023-38996 | MEDIUM | 6.7 | 0.4% | Aug 22, 2023 | An issue in all versions of Douran DSGate allows a local authenticated privileged attacker to execute arbitrary code via... |
| CVE-2023-38732 | MEDIUM | 4.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7 server could allow an authenticated user to view sensitive informa... |
| CVE-2023-38668 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Stack-based buffer over-read in disasm in nasm 2.16 allows attackers to cause a denial of service (crash). |
| CVE-2023-38667 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Stack-based buffer over-read in function disasm in nasm 2.16 allows attackers to cause a denial of service. |
| CVE-2023-38666 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in... |
| CVE-2023-38665 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows attackers to cause a denial of service (crash). |
| CVE-2023-37440 | MEDIUM | 5.3 | 0.4% | Aug 22, 2023 | A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated ... |
| CVE-2023-37439 | MEDIUM | 6.1 | 0.4% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37438 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37437 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37436 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37435 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37425 | MEDIUM | 6.1 | 0.4% | Aug 22, 2023 | A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated ... |
| CVE-2023-37423 | MEDIUM | 5.4 | 0.4% | Aug 22, 2023 | Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated re... |
| CVE-2023-37422 | MEDIUM | 5.4 | 0.4% | Aug 22, 2023 | Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated re... |
| CVE-2023-37421 | MEDIUM | 5.4 | 0.4% | Aug 22, 2023 | Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated re... |
| CVE-2023-24516 | MEDIUM | 5.4 | 0.4% | Aug 22, 2023 | Cross-site Scripting (XSS) vulnerability in the Pandora FMS Special Days component allows an attacker to use it to steal... |
| CVE-2023-24515 | MEDIUM | 6.5 | 0.4% | Aug 22, 2023 | Server-Side Request Forgery (SSRF) vulnerability in API checker of Pandora FMS. Application does not have a check on the... |
| CVE-2023-24514 | MEDIUM | 6.1 | 0.4% | Aug 22, 2023 | Cross-site Scripting (XSS) vulnerability in Visual Console Module of Pandora FMS could be used to hijack admin users ses... |
| CVE-2023-23565 | MEDIUM | 4.9 | 1.0% | Aug 22, 2023 | An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to retrieve PHP files from the... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now