2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49040 | CRITICAL | 9.8 | 1.5% | Nov 27, 2023 | An issue in Tneda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the adslPwd parameter in the f... |
| CVE-2023-42000 | CRITICAL | 9.8 | 1.5% | Nov 27, 2023 | Arcserve UDP prior to 9.2 contains a path traversal vulnerability in com.ca.arcflash.ui.server.servlet.FileHandlingServl... |
| CVE-2023-41999 | CRITICAL | 9.8 | 1.4% | Nov 27, 2023 | An authentication bypass exists in Arcserve UDP prior to version 9.2. An unauthenticated, remote attacker can obtain a v... |
| CVE-2023-41998 | CRITICAL | 9.8 | 15.3% | Nov 27, 2023 | Arcserve UDP prior to 9.2 contained a vulnerability in the com.ca.arcflash.rps.webservice.RPSService4CPMImpl interface. ... |
| CVE-2023-49046 | CRITICAL | 9.8 | 1.4% | Nov 27, 2023 | Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the devNam... |
| CVE-2023-49043 | CRITICAL | 9.8 | 13.2% | Nov 27, 2023 | Buffer Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the wpaps... |
| CVE-2023-4590 | CRITICAL | 9.8 | 1.1% | Nov 27, 2023 | Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0. This vulnerability could allow an attacker t... |
| CVE-2023-6309 | CRITICAL | 9.8 | 4.2% | Nov 27, 2023 | A vulnerability, which was classified as critical, was found in moses-smt mosesdecoder up to 4.0. This affects an unknow... |
| CVE-2023-6307 | CRITICAL | 9.8 | 0.8% | Nov 27, 2023 | A vulnerability classified as critical was found in jeecgboot JimuReport up to 1.6.1. Affected by this vulnerability is ... |
| CVE-2023-6306 | CRITICAL | 9.8 | 0.8% | Nov 27, 2023 | A vulnerability classified as critical has been found in SourceCodester Free and Open Source Inventory Management System... |
| CVE-2023-6305 | CRITICAL | 9.8 | 0.8% | Nov 27, 2023 | A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been rated as c... |
| CVE-2023-49312 | CRITICAL | 9.1 | 0.7% | Nov 26, 2023 | Precision Bridge PrecisionBridge.exe (aka the thick client) before 7.3.21 allows an integrity violation in which the sam... |
| CVE-2023-48312 | CRITICAL | 9.8 | 0.6% | Nov 24, 2023 | capsule-proxy is a reverse proxy for the capsule operator project. Affected versions are subject to a privilege escalati... |
| CVE-2023-6274 | CRITICAL | 9.8 | 2.9% | Nov 24, 2023 | A vulnerability was found in Byzoro Smart S80 up to 20231108. It has been declared as critical. Affected by this vulnera... |
| CVE-2023-46575 | CRITICAL | 9.8 | 1.3% | Nov 24, 2023 | A SQL injection vulnerability exists in Meshery prior to version v0.6.179, enabling a remote attacker to retrieve sensit... |
| CVE-2023-49214 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Usedesk before 1.7.57 allows chat template injection. |
| CVE-2023-49210 | CRITICAL | 9.8 | 1.9% | Nov 23, 2023 | The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" ... |
| CVE-2023-49208 | CRITICAL | 9.8 | 0.9% | Nov 23, 2023 | scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation... |
| CVE-2023-4677 | CRITICAL | 9.8 | 0.5% | Nov 23, 2023 | Cron log backup files contain administrator session IDs. It is trivial for any attacker who can reach the Pandora FMS Co... |
| CVE-2023-41790 | CRITICAL | 9.8 | 0.6% | Nov 23, 2023 | Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging/Manipulating Configuration File S... |
| CVE-2023-3631 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Medart Health Serv... |
| CVE-2023-3377 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software... |
| CVE-2023-28812 | CRITICAL | 9.8 | 1.0% | Nov 23, 2023 | There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability b... |
| CVE-2023-29076 | CRITICAL | 9.8 | 1.0% | Nov 23, 2023 | A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause ... |
| CVE-2023-29075 | CRITICAL | 9.8 | 1.0% | Nov 23, 2023 | A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now