2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3794 | MEDIUM | 6.1 | 0.3% | Jul 20, 2023 | A vulnerability classified as problematic has been found in Bug Finder ChainCity Real Estate Investment Platform 1.0. Af... |
| CVE-2023-3792 | MEDIUM | 6.5 | 0.6% | Jul 20, 2023 | A vulnerability was found in Beijing Netcon NS-ASG 6.3. It has been classified as problematic. This affects an unknown p... |
| CVE-2023-38617 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit... |
| CVE-2023-38523 | MEDIUM | 5.3 | 0.8% | Jul 20, 2023 | The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, with... |
| CVE-2023-37602 | MEDIUM | 6.1 | 0.6% | Jul 20, 2023 | An arbitrary file upload vulnerability in the component /workplace#!explorer of Alkacon OpenCMS v15.0 allows attackers t... |
| CVE-2023-37600 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit... |
| CVE-2023-37164 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Diafan CMS v6.0 was discovered to contain a reflected cross-site scripting via the cat_id parameter at /shop/?module=sho... |
| CVE-2023-38335 | MEDIUM | 5.3 | 1.1% | Jul 20, 2023 | Omnis Studio 10.22.00 has incorrect access control. It advertises a feature for making Omnis libraries "always private" ... |
| CVE-2023-38334 | MEDIUM | 6.5 | 0.8% | Jul 20, 2023 | Omnis Studio 10.22.00 has incorrect access control. It advertises an irreversible feature for locking classes within Omn... |
| CVE-2023-37728 | MEDIUM | 6.1 | 1.4% | Jul 20, 2023 | IceWarp v10.2.1 was discovered to contain cross-site scripting (XSS) vulnerability via the color parameter. |
| CVE-2023-3790 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability has been found in Boom CMS 8.0.7 and classified as problematic. Affected by this vulnerability is the fu... |
| CVE-2023-3789 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | A vulnerability, which was classified as problematic, was found in PaulPrinting CMS 2018. Affected is an unknown functio... |
| CVE-2023-3788 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability, which was classified as problematic, has been found in ActiveITzone Active Super Shop CMS 2.5. This iss... |
| CVE-2023-3787 | MEDIUM | 5.4 | 0.6% | Jul 20, 2023 | A vulnerability classified as problematic was found in Codecanyon Tiva Events Calender 1.4. This vulnerability affects u... |
| CVE-2023-3347 | MEDIUM | 5.9 | 0.4% | Jul 20, 2023 | A vulnerability was found in Samba's SMB2 packet signing mechanism. The SMB2 packet signing is not enforced if an admin ... |
| CVE-2023-34968 | MEDIUM | 5.3 | 1.2% | Jul 20, 2023 | A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side a... |
| CVE-2023-34967 | MEDIUM | 5.3 | 62.6% | Jul 20, 2023 | A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC ... |
| CVE-2023-32476 | MEDIUM | 5.5 | 0.2% | Jul 20, 2023 | Dell Hybrid Client version 2.0 contains a Sensitive Data Exposure vulnerability. An unauthenticated malicious user on t... |
| CVE-2023-32265 | MEDIUM | 6.5 | 0.4% | Jul 20, 2023 | A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) compo... |
| CVE-2023-3786 | MEDIUM | 6.8 | 0.3% | Jul 20, 2023 | A vulnerability classified as problematic has been found in Aures Komet up to 20230509. This affects an unknown part of ... |
| CVE-2023-32455 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2208 (9.3.2102) contain a sensitive information disclosure vulnerability. An unauthe... |
| CVE-2023-32447 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2306 (9.4.2103) contain a sensitive information disclosure vulnerability. A maliciou... |
| CVE-2023-32446 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2303 (9.4.1141) contain a sensitive information disclosure vulnerability. An unauthe... |
| CVE-2023-32483 | MEDIUM | 4.4 | 0.1% | Jul 20, 2023 | Wyse Management Suite versions prior to 4.0 contain a sensitive information disclosure vulnerability. An authenticated ... |
| CVE-2023-32482 | MEDIUM | 4.9 | 0.4% | Jul 20, 2023 | Wyse Management Suite versions prior to 4.0 contain an improper authorization vulnerability. An authenticated malicious... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now