2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50705 | MEDIUM | 5.3 | 0.5% | Dec 20, 2023 | An attacker could create malicious requests to obtain sensitive information about the web server. |
| CVE-2023-50704 | MEDIUM | 6.1 | 0.4% | Dec 20, 2023 | An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain ... |
| CVE-2023-50703 | MEDIUM | 5.9 | 0.3% | Dec 20, 2023 | An attacker with network access could perform a man-in-the-middle (MitM) attack and capture sensitive information to ga... |
| CVE-2023-47161 | MEDIUM | 6.5 | 0.8% | Dec 20, 2023 | IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 may mishandle input valida... |
| CVE-2023-45887 | CRITICAL | 9.8 | 1.6% | Dec 20, 2023 | DS Wireless Communication (DWC) with DWC_VERSION_3 and DWC_VERSION_11 allows remote attackers to execute arbitrary code ... |
| CVE-2023-42013 | MEDIUM | 5.3 | 0.7% | Dec 20, 2023 | IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 could allow a remote attac... |
| CVE-2023-42012 | MEDIUM | 5.5 | 0.2% | Dec 20, 2023 | An IBM UrbanCode Deploy Agent 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 installed as a Windows service in a non-stand... |
| CVE-2023-6930 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | EuroTel ETL3100 versions v01c01 and v01x37 suffer from an unauthenticated configuration and log download vulner... |
| CVE-2023-6929 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | EuroTel ETL3100 versions v01c01 and v01x37 are vulnerable to insecure direct object references that occur when the ... |
| CVE-2023-6928 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | EuroTel ETL3100 versions v01c01 and v01x37 does not limit the number of attempts to guess administrative credentials in... |
| CVE-2023-49147 | HIGH | 7.8 | 0.5% | Dec 19, 2023 | An issue was discovered in PDF24 Creator 11.14.0. The configuration of the msi installer file was found to produce a vis... |
| CVE-2023-45172 | MEDIUM | 5.5 | 0.2% | Dec 19, 2023 | IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to caus... |
| CVE-2023-50835 | HIGH | 8.8 | 0.3% | Dec 19, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Praveen Goswami Advanced Category Template.This issue affects Advance... |
| CVE-2023-49164 | HIGH | 8.8 | 0.3% | Dec 19, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in OceanWP Ocean Extra.This issue affects Ocean Extra: from n/a through ... |
| CVE-2023-49004 | CRITICAL | 9.8 | 1.9% | Dec 19, 2023 | An issue in D-Link DIR-850L v.B1_FW223WWb01 allows a remote attacker to execute arbitrary code via a crafted script to t... |
| CVE-2023-47267 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | An issue discovered in TheGreenBow Windows Enterprise Certified VPN Client 6.52, Windows Standard VPN Client 6.87, and W... |
| CVE-2023-47146 | MEDIUM | 6.5 | 0.7% | Dec 19, 2023 | IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified... |
| CVE-2023-46624 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a ... |
| CVE-2023-42940 | MEDIUM | 5.7 | 0.7% | Dec 19, 2023 | A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A us... |
| CVE-2023-38126 | HIGH | 7.2 | 68.6% | Dec 19, 2023 | Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability. This vulnerability... |
| CVE-2023-50466 | HIGH | 8.8 | 1.9% | Dec 19, 2023 | An authenticated command injection vulnerability in Weintek cMT2078X easyweb Web Version v2.1.3, OS v20220215 allows att... |
| CVE-2023-49812 | HIGH | 7.5 | 0.5% | Dec 19, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This... |
| CVE-2023-49764 | HIGH | 7.2 | 0.7% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Younes JFR. Advanc... |
| CVE-2023-49750 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoonthemes Coupon... |
| CVE-2023-48764 | HIGH | 7.2 | 0.7% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GuardGiant Brute F... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now