2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-30698MEDIUM5.5Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BL...
CVE-2023-30654MEDIUM5.5Improper access control vulnerability in SLocationService prior to SMR Aug-2023 Release 1 allows local attacker to updat...
CVE-2023-36672MEDIUM5.7An issue was discovered in the Clario VPN client through 5.9.1.1662 for macOS. The VPN client insecurely configures the ...
CVE-2023-36671MEDIUM6.3An issue was discovered in the Clario VPN client through 5.9.1.1662 for macOS. The VPN client insecurely configures the ...
CVE-2023-35838MEDIUM5.7The WireGuard client 0.5.3 on Windows insecurely configures the operating system and firewall such that traffic to a loc...
CVE-2023-38347MEDIUM6.1An issue was discovered in LWsystems Benno MailArchiv 2.10.1. Attackers can cause XSS via JavaScript content to a mailbo...
CVE-2023-39006MEDIUM5.4The Crash Reporter (crash_reporter.php) component of OPNsense Community Edition before 23.7 and Business Edition before ...
CVE-2023-39002MEDIUM6.1A cross-site scripting (XSS) vulnerability in the act parameter of system_certmanager.php in OPNsense Community Edition ...
CVE-2023-39000MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in the component /ui/diagnostics/log/core/ of OPNsense Community Ed...
CVE-2023-38999MEDIUM6.5A Cross-Site Request Forgery (CSRF) in the System Halt API (/system/halt) of OPNsense Community Edition before 23.7 and ...
CVE-2023-38998MEDIUM6.1An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows a...
CVE-2023-39531MEDIUM6.8Sentry is an error tracking and performance monitoring platform. Starting in version 10.0.0 and prior to version 23.7.2,...
CVE-2023-4273MEDIUM6.7A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file nam...
CVE-2023-3953MEDIUM5.3 A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could caus...
CVE-2023-31450MEDIUM4.7A path traversal vulnerability was identified in the SQL v2 sensors in PRTG 23.2.84.1566 and earlier versions where an a...
CVE-2023-31449MEDIUM4.7A path traversal vulnerability was identified in the WMI Custom sensor in PRTG 23.2.84.1566 and earlier versions where a...
CVE-2023-31448MEDIUM4.7A path traversal vulnerability was identified in the HL7 sensor in PRTG 23.2.84.1566 and earlier versions where an authe...
CVE-2023-24015MEDIUM4.3A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forc...
CVE-2023-23903MEDIUM4.9An authenticated administrator can upload a SAML configuration file with the wrong format, with the application not chec...
CVE-2023-38213MEDIUM5.5Adobe Dimension version 3.4.9 is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensit...
CVE-2023-24471MEDIUM6.5An access control vulnerability was found, due to the restrictions that are applied on actual assertions not being enfor...
CVE-2023-22843MEDIUM4.8An authenticated attacker with administrative access to the web management interface can inject malicious JavaScript cod...
CVE-2023-22378MEDIUM6.5A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the sorting...
CVE-2023-38209MEDIUM6.5Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Inc...
CVE-2023-37858MEDIUM4.9In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now