2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7095 | CRITICAL | 9.8 | 13.7% | Dec 25, 2023 | A vulnerability, which was classified as critical, has been found in Totolink A7100RU 7.4cu.2313_B20191024. Affected by ... |
| CVE-2023-7102 | CRITICAL | 9.8 | 43.3% | Dec 24, 2023 | Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed P... |
| CVE-2023-51714 | CRITICAL | 9.8 | 1.0% | Dec 24, 2023 | An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before ... |
| CVE-2023-51763 | CRITICAL | 9.8 | 0.9% | Dec 24, 2023 | csv_builder.rb in ActiveAdmin (aka Active Admin) before 3.2.0 allows CSV injection. |
| CVE-2023-6972 | CRITICAL | 9.8 | 1.4% | Dec 23, 2023 | The Backup Migration plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.3.9 vi... |
| CVE-2023-6971 | CRITICAL | 9.8 | 6.4% | Dec 23, 2023 | The Backup Migration plugin for WordPress is vulnerable to Remote File Inclusion in versions 1.0.8 to 1.3.9 via the 'con... |
| CVE-2023-50928 | CRITICAL | 9 | 0.4% | Dec 22, 2023 | "Sandbox Accounts for Events" provides multiple, temporary AWS accounts to a number of authenticated users simultaneousl... |
| CVE-2023-50731 | CRITICAL | 9.1 | 1.0% | Dec 22, 2023 | MindsDB is a SQL Server for artificial intelligence. Prior to version 23.11.4.1, the `put` method in `mindsdb/mindsdb/ap... |
| CVE-2023-51035 | CRITICAL | 9.8 | 1.3% | Dec 22, 2023 | TOTOLINK EX1200L V9.3.5u.6146_B20201023 is vulnerable to arbitrary command execution on the cstecgi.cgi NTPSyncWithHost ... |
| CVE-2023-51034 | CRITICAL | 9.8 | 1.1% | Dec 22, 2023 | TOTOlink EX1200L V9.3.5u.6146_B20201023 is vulnerable to arbitrary command execution via the cstecgi.cgi UploadFirmwareF... |
| CVE-2023-51033 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1200L V9.3.5u.6146_B20201023 is vulnerable to arbitrary command execution via the cstecgi.cgi setOpModeCfg in... |
| CVE-2023-51022 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘langFlag’ par... |
| CVE-2023-51021 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘merge’ parame... |
| CVE-2023-51020 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘langType’ par... |
| CVE-2023-51019 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘key5g’ parame... |
| CVE-2023-51018 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘opmode’ param... |
| CVE-2023-51017 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanIp paramete... |
| CVE-2023-51016 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the setRebootScheC... |
| CVE-2023-51015 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOLINX EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘enable parameter’ of the s... |
| CVE-2023-51014 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOLINK EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanSecDns para... |
| CVE-2023-51013 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanNetmask par... |
| CVE-2023-51012 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanGateway par... |
| CVE-2023-51011 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanPriDns para... |
| CVE-2023-50708 | CRITICAL | 9.8 | 0.7% | Dec 22, 2023 | yii2-authclient is an extension that adds OpenID, OAuth, OAuth2 and OpenId Connect consumers for the Yii framework 2.0. ... |
| CVE-2023-50147 | CRITICAL | 9.8 | 1.2% | Dec 22, 2023 | There is an arbitrary command execution vulnerability in the setDiagnosisCfg function of the cstecgi .cgi of the TOTOlin... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now