2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-23693HIGH8.2 Dell VxRail, versions prior to 7.0.450, contains an OS command injection Vulnerability in DCManager command-line utilit...
CVE-2023-2845HIGH8.1Improper Access Control in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v1.1.0.
CVE-2023-28394HIGH8.8Beekeeper Studio versions prior to 3.9.9 allows a remote authenticated attacker to execute arbitrary JavaScript code wit...
CVE-2023-28392HIGH7.2Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, ...
CVE-2023-27521HIGH8.8OS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10...
CVE-2023-27518HIGH8.8Buffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10...
CVE-2023-27514HIGH8.8OS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and...
CVE-2023-27512HIGH7.2Use of hard-coded credentials exists in SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10, and SV-CPT-MC310F ver...
CVE-2023-27387HIGH8.8Cross-site request forgery (CSRF) in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauthenti...
CVE-2023-25946HIGH8.8Authentication bypass vulnerability in Qrio Lock (Q-SL2) firmware version 2.0.9 and earlier allows a network-adjacent at...
CVE-2023-31996HIGH8.8Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Command Injection due to improper sanitization of special character...
CVE-2023-31826HIGH7.8Skyscreamer Open Source Nevado JMS v1.3.2 does not perform security checks when receiving messages. This allows attacker...
CVE-2023-31741HIGH7.2There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gain...
CVE-2023-31740HIGH7.2There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gain...
CVE-2023-31670HIGH7.5An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a ...
CVE-2023-2505HIGH8.8 The affected products have a CSRF vulnerability that could allow an attacker to execute code and upload malicious files...
CVE-2023-25183HIGH7.2 In Snap One OvrC Pro versions prior to 7.2, when logged into the superuser account, a n...
CVE-2023-31193HIGH7.5 Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a program from their servers....
CVE-2023-29838HIGH7.8Insecure Permission vulnerability found in Botkind/Siber Systems SyncApp v.19.0.3.0 allows a local attacker toe escalate...
CVE-2023-28649HIGH7.5The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it. A ...
CVE-2023-27067HIGH7.5Directory Traversal vulnerability in Sitecore Experience Platform through 10.2 allows remote attackers to download arbit...
CVE-2023-2839HIGH7.5Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-31742HIGH7.2There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attack...
CVE-2023-32350HIGH8.8 Versions 00.07.00 through 00.07.03 of Teltonika’s RUT router firmware contain an operating system (OS) command injectio...
CVE-2023-32349HIGH8.8 Version 00.07.03.4 and prior of Teltonika’s RUT router firmware contain a packet dump utility that contains proper vali...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now