2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-50705MEDIUM5.3 An attacker could create malicious requests to obtain sensitive information about the web server.
CVE-2023-50704MEDIUM6.1 An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain ...
CVE-2023-50703MEDIUM5.9 An attacker with network access could perform a man-in-the-middle (MitM) attack and capture sensitive information to ga...
CVE-2023-47161MEDIUM6.5IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 may mishandle input valida...
CVE-2023-45887CRITICAL9.8DS Wireless Communication (DWC) with DWC_VERSION_3 and DWC_VERSION_11 allows remote attackers to execute arbitrary code ...
CVE-2023-42013MEDIUM5.3IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 could allow a remote attac...
CVE-2023-42012MEDIUM5.5An IBM UrbanCode Deploy Agent 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 installed as a Windows service in a non-stand...
CVE-2023-6930CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 suffer from an unauthenticated configuration and log download vulner...
CVE-2023-6929CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 are vulnerable to insecure direct object references that occur when the ...
CVE-2023-6928CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 does not limit the number of attempts to guess administrative credentials in...
CVE-2023-49147HIGH7.8An issue was discovered in PDF24 Creator 11.14.0. The configuration of the msi installer file was found to produce a vis...
CVE-2023-45172MEDIUM5.5IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to caus...
CVE-2023-50835HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Praveen Goswami Advanced Category Template.This issue affects Advance...
CVE-2023-49164HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in OceanWP Ocean Extra.This issue affects Ocean Extra: from n/a through ...
CVE-2023-49004CRITICAL9.8An issue in D-Link DIR-850L v.B1_FW223WWb01 allows a remote attacker to execute arbitrary code via a crafted script to t...
CVE-2023-47267CRITICAL9.8An issue discovered in TheGreenBow Windows Enterprise Certified VPN Client 6.52, Windows Standard VPN Client 6.87, and W...
CVE-2023-47146MEDIUM6.5IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified...
CVE-2023-46624MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a ...
CVE-2023-42940MEDIUM5.7A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A us...
CVE-2023-38126HIGH7.2Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability. This vulnerability...
CVE-2023-50466HIGH8.8An authenticated command injection vulnerability in Weintek cMT2078X easyweb Web Version v2.1.3, OS v20220215 allows att...
CVE-2023-49812HIGH7.5Authorization Bypass Through User-Controlled Key vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This...
CVE-2023-49764HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Younes JFR. Advanc...
CVE-2023-49750CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoonthemes Coupon...
CVE-2023-48764HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GuardGiant Brute F...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now