2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51049 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_bbsauth parameter at /admin/ajax.php. |
| CVE-2023-51048 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_newsauth parameter at /admin/ajax.php. |
| CVE-2023-6145 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in İstanbul Soft Info... |
| CVE-2023-49826 | CRITICAL | 9.8 | 0.6% | Dec 21, 2023 | Deserialization of Untrusted Data vulnerability in PenciDesign Soledad – Multipurpose, Newspaper, Blog & WooCommerce Wor... |
| CVE-2023-49778 | CRITICAL | 9.8 | 0.8% | Dec 21, 2023 | Deserialization of Untrusted Data vulnerability in Hakan Demiray Sayfa Sayac.This issue affects Sayfa Sayac: from n/a th... |
| CVE-2023-32242 | CRITICAL | 9.8 | 0.8% | Dec 21, 2023 | Deserialization of Untrusted Data vulnerability in xtemos WoodMart - Multipurpose WooCommerce Theme.This issue affects W... |
| CVE-2023-51656 | CRITICAL | 9.8 | 1.0% | Dec 21, 2023 | Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.1... |
| CVE-2023-50477 | CRITICAL | 9.8 | 0.7% | Dec 21, 2023 | An issue was discovered in nos client version 0.6.6, allows remote attackers to escalate privileges via getRPCEndpoint.j... |
| CVE-2023-50475 | CRITICAL | 9.1 | 0.5% | Dec 21, 2023 | An issue was discovered in bcoin-org bcoin version 2.2.0, allows remote attackers to obtain sensitive information via we... |
| CVE-2023-51655 | CRITICAL | 9.8 | 0.3% | Dec 21, 2023 | In JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible in Untrusted Project mode via a malicious plugin ... |
| CVE-2023-7023 | CRITICAL | 9.8 | 0.7% | Dec 21, 2023 | A vulnerability was found in Tongda OA 2017 up to 11.9. It has been rated as critical. Affected by this issue is some un... |
| CVE-2023-7022 | CRITICAL | 9.8 | 0.7% | Dec 21, 2023 | A vulnerability was found in Tongda OA 2017 up to 11.9. It has been declared as critical. Affected by this vulnerability... |
| CVE-2023-7021 | CRITICAL | 9.8 | 0.7% | Dec 21, 2023 | A vulnerability was found in Tongda OA 2017 up to 11.9. It has been classified as critical. Affected is an unknown funct... |
| CVE-2023-7020 | CRITICAL | 9.8 | 0.7% | Dec 21, 2023 | A vulnerability was found in Tongda OA 2017 up to 11.9 and classified as critical. This issue affects some unknown proce... |
| CVE-2023-29487 | CRITICAL | 9.1 | 0.7% | Dec 21, 2023 | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows... |
| CVE-2023-29486 | CRITICAL | 9.8 | 1.0% | Dec 21, 2023 | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB... |
| CVE-2023-29485 | CRITICAL | 9.8 | 1.0% | Dec 21, 2023 | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows... |
| CVE-2023-49032 | CRITICAL | 9.8 | 1.2% | Dec 21, 2023 | An issue in LTB Self Service Password before v.1.5.4 allows a remote attacker to execute arbitrary code and obtain sensi... |
| CVE-2023-50993 | CRITICAL | 9.8 | 1.2% | Dec 20, 2023 | Ruijie WS6008 v1.x v2.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 and WS6108 v1.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 was disc... |
| CVE-2023-50992 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function. |
| CVE-2023-50990 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleReboo... |
| CVE-2023-50989 | CRITICAL | 9.8 | 2.3% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a command injection vulnerability via the pingSet function. |
| CVE-2023-50988 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the bandwidth parameter in the wifiRadioSetIndoo... |
| CVE-2023-50987 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysTimeInfoSet functio... |
| CVE-2023-50986 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysLogin function. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now