2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-6617CRITICAL9.8A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been classified as critical. Af...
CVE-2023-6612CRITICAL9.8A vulnerability was found in Totolink X5000R 9.1.0cu.2300_B20230112. It has been rated as critical. This issue affects t...
CVE-2023-48423CRITICAL9.8In dhcp4_SetPDNAddress of dhcp4_Main.c, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2023-49443CRITICAL9.8DoraCMS v2.1.8 was discovered to re-use the same code for verification of valid usernames and passwords. This vulnerabil...
CVE-2023-49007CRITICAL9.8In Netgear Orbi RBR750 firmware before V7.2.6.21, there is a stack-based buffer overflow in /usr/sbin/httpd.
CVE-2023-48929CRITICAL9.8Franklin Fueling Systems System Sentinel AnyWare (SSA) version 1.6.24.492 is vulnerable to Session Fixation. The 'sid' p...
CVE-2023-43742CRITICAL9.8An authentication bypass in Zultys MX-SE, MX-SE II, MX-E, MX-Virtual, MX250, and MX30 with firmware versions prior to 17...
CVE-2023-5008CRITICAL9.8Student Information System v1.0 is vulnerable to an unauthenticated SQL Injection vulnerability on the 'regno' parameter...
CVE-2023-6581CRITICAL9.8A vulnerability has been found in D-Link DAR-7000 up to 20231126 and classified as critical. This vulnerability affects ...
CVE-2023-6579CRITICAL9.8A vulnerability, which was classified as critical, has been found in osCommerce 4. Affected by this issue is some unknow...
CVE-2023-35618CRITICAL9.6Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-49411CRITICAL9.8Tenda W30E V16.01.0.12(4843) contains a stack overflow vulnerability via the function formDeleteMeshNode.
CVE-2023-49409CRITICAL9.8Tenda AX3 V16.03.12.11 was discovered to contain a Command Execution vulnerability via the function /goform/telnet.
CVE-2023-49408CRITICAL9.8Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the function set_device_name.
CVE-2023-49406CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a Command Execution vulnerability via the function /goform/telnet...
CVE-2023-49405CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function UploadCfg.
CVE-2023-49404CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formAdvancedSetListSet.
CVE-2023-40302CRITICAL9.1NETSCOUT nGeniusPULSE 3.8 has Weak File Permissions Vulnerability
CVE-2023-40301CRITICAL9.8NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability.
CVE-2023-40300CRITICAL9.8NETSCOUT nGeniusPULSE 3.8 has a Hardcoded Cryptographic Key.
CVE-2023-50002CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formRebootMeshNode.
CVE-2023-50001CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formUpgradeMeshOnline.
CVE-2023-50000CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formResetMeshNode.
CVE-2023-49999CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a command injection vulnerability via the function setUmountUSBPa...
CVE-2023-49410CRITICAL9.8Tenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function via the function set_wan_status...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now