2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-49040CRITICAL9.8An issue in Tneda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the adslPwd parameter in the f...
CVE-2023-42000CRITICAL9.8Arcserve UDP prior to 9.2 contains a path traversal vulnerability in com.ca.arcflash.ui.server.servlet.FileHandlingServl...
CVE-2023-41999CRITICAL9.8An authentication bypass exists in Arcserve UDP prior to version 9.2. An unauthenticated, remote attacker can obtain a v...
CVE-2023-41998CRITICAL9.8Arcserve UDP prior to 9.2 contained a vulnerability in the com.ca.arcflash.rps.webservice.RPSService4CPMImpl interface. ...
CVE-2023-49046CRITICAL9.8Stack Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the devNam...
CVE-2023-49043CRITICAL9.8Buffer Overflow vulnerability in Tenda AX1803 v.1.0.0.1 allows a remote attacker to execute arbitrary code via the wpaps...
CVE-2023-4590CRITICAL9.8Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0. This vulnerability could allow an attacker t...
CVE-2023-6309CRITICAL9.8A vulnerability, which was classified as critical, was found in moses-smt mosesdecoder up to 4.0. This affects an unknow...
CVE-2023-6307CRITICAL9.8A vulnerability classified as critical was found in jeecgboot JimuReport up to 1.6.1. Affected by this vulnerability is ...
CVE-2023-6306CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Free and Open Source Inventory Management System...
CVE-2023-6305CRITICAL9.8A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been rated as c...
CVE-2023-49312CRITICAL9.1Precision Bridge PrecisionBridge.exe (aka the thick client) before 7.3.21 allows an integrity violation in which the sam...
CVE-2023-48312CRITICAL9.8capsule-proxy is a reverse proxy for the capsule operator project. Affected versions are subject to a privilege escalati...
CVE-2023-6274CRITICAL9.8A vulnerability was found in Byzoro Smart S80 up to 20231108. It has been declared as critical. Affected by this vulnera...
CVE-2023-46575CRITICAL9.8A SQL injection vulnerability exists in Meshery prior to version v0.6.179, enabling a remote attacker to retrieve sensit...
CVE-2023-49214CRITICAL9.8Usedesk before 1.7.57 allows chat template injection.
CVE-2023-49210CRITICAL9.8The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" ...
CVE-2023-49208CRITICAL9.8scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation...
CVE-2023-4677CRITICAL9.8Cron log backup files contain administrator session IDs. It is trivial for any attacker who can reach the Pandora FMS Co...
CVE-2023-41790CRITICAL9.8Uncontrolled Search Path Element vulnerability in Pandora FMS on all allows Leveraging/Manipulating Configuration File S...
CVE-2023-3631CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Medart Health Serv...
CVE-2023-3377CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veribilim Software...
CVE-2023-28812CRITICAL9.8There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability b...
CVE-2023-29076CRITICAL9.8A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause ...
CVE-2023-29075CRITICAL9.8A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now