2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51022 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘langFlag’ par... |
| CVE-2023-51021 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘merge’ parame... |
| CVE-2023-51020 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘langType’ par... |
| CVE-2023-51019 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘key5g’ parame... |
| CVE-2023-51018 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘opmode’ param... |
| CVE-2023-51017 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanIp paramete... |
| CVE-2023-51016 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the setRebootScheC... |
| CVE-2023-51015 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOLINX EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘enable parameter’ of the s... |
| CVE-2023-51014 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOLINK EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanSecDns para... |
| CVE-2023-51013 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanNetmask par... |
| CVE-2023-51012 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanGateway par... |
| CVE-2023-51011 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the lanPriDns para... |
| CVE-2023-50714 | HIGH | 8.8 | 0.5% | Dec 22, 2023 | yii2-authclient is an extension that adds OpenID, OAuth, OAuth2 and OpenId Connect consumers for the Yii framework 2.0. ... |
| CVE-2023-50708 | CRITICAL | 9.8 | 0.7% | Dec 22, 2023 | yii2-authclient is an extension that adds OpenID, OAuth, OAuth2 and OpenId Connect consumers for the Yii framework 2.0. ... |
| CVE-2023-50147 | CRITICAL | 9.8 | 1.2% | Dec 22, 2023 | There is an arbitrary command execution vulnerability in the setDiagnosisCfg function of the cstecgi .cgi of the TOTOlin... |
| CVE-2023-51028 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOLINK EX1800T 9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the apcliChannel pa... |
| CVE-2023-51027 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘apcliAuthMode... |
| CVE-2023-51026 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T V9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘hour’ paramet... |
| CVE-2023-51025 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T V9.1.0cu.2112_B20220316 is vulnerable to an unauthorized arbitrary command execution in the ‘admuser’ p... |
| CVE-2023-51024 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to unauthorized arbitrary command execution in the ‘tz’ parameter... |
| CVE-2023-51023 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | TOTOlink EX1800T v9.1.0cu.2112_B20220316 is vulnerable to arbitrary command execution in the ‘host_time’ parameter of th... |
| CVE-2023-43088 | MEDIUM | 6.8 | 0.3% | Dec 22, 2023 | Dell Client BIOS contains a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical ... |
| CVE-2023-39251 | MEDIUM | 6.7 | 0.2% | Dec 22, 2023 | Dell BIOS contains an Improper Input Validation vulnerability. A local malicious user with high privileges could potent... |
| CVE-2023-51662 | HIGH | 7.5 | 0.3% | Dec 22, 2023 | The Snowflake .NET driver provides an interface to the Microsoft .NET open source software framework for developing appl... |
| CVE-2023-51649 | MEDIUM | 4.3 | 0.4% | Dec 22, 2023 | Nautobot is a Network Source of Truth and Network Automation Platform built as a web application atop the Django Python ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now