2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41806 | HIGH | 7.5 | 0.5% | Nov 23, 2023 | Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation. This vulnerability causes... |
| CVE-2023-41792 | MEDIUM | 6.1 | 0.2% | Nov 23, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Pandora FMS on all allows Cross-Site Scripting (XSS). This vulnerabil... |
| CVE-2023-41791 | MEDIUM | 5.4 | 0.5% | Nov 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all... |
| CVE-2023-41790 | CRITICAL | 9.8 | 0.6% | Nov 23, 2023 | Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging/Manipulating Configuration File S... |
| CVE-2023-41789 | MEDIUM | 6.1 | 0.5% | Nov 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all... |
| CVE-2023-41788 | HIGH | 8.8 | 0.7% | Nov 23, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Pandora FMS on all allows Accessing Functionality Not P... |
| CVE-2023-41787 | HIGH | 7.5 | 0.5% | Nov 23, 2023 | Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging/Manipulating Configuration File S... |
| CVE-2023-41786 | MEDIUM | 6.5 | 0.5% | Nov 23, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pandora FMS on all allows File Discovery. Th... |
| CVE-2023-4595 | MEDIUM | 6.5 | 0.7% | Nov 23, 2023 | An information exposure vulnerability has been found, the exploitation of which could allow a remote user to retrieve se... |
| CVE-2023-4594 | MEDIUM | 5.4 | 0.4% | Nov 23, 2023 | Stored XSS vulnerability. This vulnerability could allow an attacker to store a malicious JavaScript payload via GET and... |
| CVE-2023-4593 | MEDIUM | 6.5 | 1.1% | Nov 23, 2023 | Path traversal vulnerability whose exploitation could allow an authenticated remote user to bypass SecurityManager's int... |
| CVE-2023-4406 | MEDIUM | 6.1 | 0.5% | Nov 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in KC Group E-Commerc... |
| CVE-2023-43123 | MEDIUM | 5.5 | 0.3% | Nov 23, 2023 | On unix-like systems, the temporary directory is shared between all user. As such, writing to this directory using APIs ... |
| CVE-2023-3631 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Medart Health Serv... |
| CVE-2023-3377 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software... |
| CVE-2023-28813 | HIGH | 7.5 | 0.6% | Nov 23, 2023 | An attacker could exploit a vulnerability by sending crafted messages to computers installed with this plug-in to modify... |
| CVE-2023-28812 | CRITICAL | 9.8 | 1.0% | Nov 23, 2023 | There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability b... |
| CVE-2023-44290 | HIGH | 7.8 | 0.2% | Nov 23, 2023 | Dell Command | Monitor versions prior to 10.10.0, contain an improper access control vulnerability. A local malicious s... |
| CVE-2023-44289 | HIGH | 7.8 | 0.2% | Nov 23, 2023 | Dell Command | Configure versions prior to 4.11.0, contain an improper access control vulnerability. A local malicious ... |
| CVE-2023-43086 | HIGH | 7.8 | 0.2% | Nov 23, 2023 | Dell Command | Configure, versions prior to 4.11.0, contains an improper access control vulnerability. A local maliciou... |
| CVE-2023-39253 | HIGH | 7.8 | 0.2% | Nov 23, 2023 | Dell OS Recovery Tool, versions 2.2.4013, 2.3.7012.0, and 2.3.7515.0 contain an Improper Access Control Vulnerability. ... |
| CVE-2023-28811 | MEDIUM | 6.5 | 0.4% | Nov 23, 2023 | There is a buffer overflow in the password recovery feature of Hikvision NVR/DVR models. If exploited, an attacker on th... |
| CVE-2023-41140 | HIGH | 7.8 | 0.3% | Nov 23, 2023 | A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buff... |
| CVE-2023-41139 | HIGH | 7.8 | 0.3% | Nov 23, 2023 | A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untruste... |
| CVE-2023-29076 | CRITICAL | 9.8 | 1.0% | Nov 23, 2023 | A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now