2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-46096 | MEDIUM | 6.5 | 0.3% | Nov 14, 2023 | A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does ... |
| CVE-2023-45794 | HIGH | 8.1 | 0.4% | Nov 14, 2023 | A vulnerability has been identified in Mendix Applications using Mendix 10 (All versions < V10.4.0), Mendix Applications... |
| CVE-2023-44374 | HIGH | 8.8 | 0.7% | Nov 14, 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM... |
| CVE-2023-44373 | CRITICAL | 9.4 | 1.4% | Nov 14, 2023 | Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with admini... |
| CVE-2023-44322 | MEDIUM | 5.9 | 0.9% | Nov 14, 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM... |
| CVE-2023-44321 | MEDIUM | 6.5 | 1.0% | Nov 14, 2023 | Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web ... |
| CVE-2023-44320 | MEDIUM | 4.3 | 0.6% | Nov 14, 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDC... |
| CVE-2023-44319 | MEDIUM | 4.9 | 0.4% | Nov 14, 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM... |
| CVE-2023-44318 | MEDIUM | 4.9 | 0.7% | Nov 14, 2023 | Affected devices use a hardcoded key to obfuscate the configuration backup that an administrator can export from the dev... |
| CVE-2023-44317 | HIGH | 8.6 | 0.4% | Nov 14, 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDC... |
| CVE-2023-43505 | MEDIUM | 6.5 | 0.5% | Nov 14, 2023 | A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in SM... |
| CVE-2023-43504 | CRITICAL | 9.8 | 0.9% | Nov 14, 2023 | A vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validat... |
| CVE-2023-43503 | HIGH | 7.5 | 0.3% | Nov 14, 2023 | A vulnerability has been identified in COMOS (All versions < V10.4.4). Caching system in the affected application leaks ... |
| CVE-2023-31247 | CRITICAL | 9.8 | 1.7% | Nov 14, 2023 | A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP... |
| CVE-2023-28391 | CRITICAL | 9.8 | 1.5% | Nov 14, 2023 | A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.0... |
| CVE-2023-28379 | CRITICAL | 9.8 | 1.7% | Nov 14, 2023 | A memory corruption vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01... |
| CVE-2023-27882 | CRITICAL | 9.8 | 1.8% | Nov 14, 2023 | A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-H... |
| CVE-2023-25181 | CRITICAL | 9.8 | 1.7% | Nov 14, 2023 | A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. ... |
| CVE-2023-24585 | CRITICAL | 9.8 | 1.2% | Nov 14, 2023 | An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A spec... |
| CVE-2023-6109 | LOW | 3.7 | 0.4% | Nov 14, 2023 | The YOP Poll plugin for WordPress is vulnerable to a race condition in all versions up to, and including, 6.5.26. This i... |
| CVE-2023-47609 | HIGH | 8.8 | 1.1% | Nov 14, 2023 | SQL injection vulnerability in OSS Calendar versions prior to v.2.0.3 allows a remote authenticated attacker to execute ... |
| CVE-2023-45881 | MEDIUM | 6.1 | 0.5% | Nov 14, 2023 | GibbonEdu Gibbon through version 25.0.0 allows /modules/Planner/resources_addQuick_ajaxProcess.php file upload with resu... |
| CVE-2023-45880 | HIGH | 7.2 | 1.2% | Nov 14, 2023 | GibbonEdu Gibbon through version 25.0.0 allows Directory Traversal via the report template builder. An attacker can crea... |
| CVE-2023-45879 | MEDIUM | 5.4 | 0.5% | Nov 14, 2023 | GibbonEdu Gibbon version 25.0.0 allows HTML Injection via an IFRAME element to the Messager component. |
| CVE-2023-45878 | CRITICAL | 9.8 | 63.1% | Nov 14, 2023 | GibbonEdu Gibbon version 25.0.1 and before allows Arbitrary File Write because rubrics_visualise_saveAjax.phps does not ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now