2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-33121MEDIUM5.5A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < ...
CVE-2023-31238MEDIUM4.8A vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions < V3.11), SICAM P850 (7KG8500-0AA00...
CVE-2023-30757MEDIUM5.5A vulnerability has been identified in Totally Integrated Automation Portal (TIA Portal) V14 (All versions), Totally Int...
CVE-2023-29178MEDIUM4.3A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before...
CVE-2023-29175MEDIUM4.8An improper certificate validation vulnerability [CWE-295] in FortiOS 6.2 all versions, 6.4 all versions, 7.0.0 through ...
CVE-2023-27465MEDIUM4.6A vulnerability has been identified in SIMOTION C240 (All versions >= V5.4 < V5.5 SP1), SIMOTION C240 PN (All versions >...
CVE-2023-26207MEDIUM6.5An insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.2.0 through 7.2.4 and FortiProxy...
CVE-2023-25609MEDIUM6.5A server-side request forgery (SSRF) vulnerability [CWE-918] in FortiManager and FortiAnalyzer GUI 7.2.0 through 7.2.1, ...
CVE-2023-2673MEDIUM5.3Improper Input Validation vulnerability in PHOENIX CONTACT FL/TC MGUARD Family in multiple versions may allow UDP packet...
CVE-2023-2876MEDIUM6.1Sensitive Cookie Without 'HttpOnly' Flag vulnerability in ABB REX640 PCL1 (firmware modules), ABB REX640 PCL2 (Firmware ...
CVE-2023-33986MEDIUM6.1SAP CRM ABAP (Grantor Management) - versions 700, 701, 702, 712, 713, 714, does not sufficiently encode user-controlled ...
CVE-2023-33985MEDIUM6.1SAP NetWeaver Enterprise Portal - version 7.50, does not sufficiently encode user-controlled inputs over the network, re...
CVE-2023-33984MEDIUM5.4SAP NetWeaver (Design Time Repository) - version 7.50, returns an unfavorable content type for some versioned files, whi...
CVE-2023-32115MEDIUM6.1An attacker can exploit MDS COMPARE TOOL and use specially crafted inputs to read and modify database commands, resultin...
CVE-2023-2827MEDIUM5.7SAP Plant Connectivity - version 15.5 (PCo) or the Production Connector for SAP Digital Manufacturing - version 1.0, do ...
CVE-2023-2563MEDIUM4.3The WordPress Contact Forms by Cimatti plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up t...
CVE-2023-2351MEDIUM4.3The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a m...
CVE-2023-2277MEDIUM4.7The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-3159MEDIUM6.7A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this fl...
CVE-2023-3161MEDIUM5.5A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height gre...
CVE-2023-34941MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the urlFilterList function of Asus RT-N10LX Router v2.0.0.39 allows...
CVE-2023-2718MEDIUM5.4The Contact Form Email WordPress plugin before 1.3.38 does not escape submitted values before displaying them in the HTM...
CVE-2023-2568MEDIUM6.1The Photo Gallery by Ays WordPress plugin before 5.1.7 does not escape some parameters before outputting it back in attr...
CVE-2023-2398MEDIUM6.1The Icegram Engage WordPress plugin before 3.1.12 does not escape a parameter before outputting it back in an attribute,...
CVE-2023-2362MEDIUM6.1The Float menu WordPress plugin before 5.0.2, Bubble Menu WordPress plugin before 3.0.4, Button Generator WordPress plug...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now