2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5827 | CRITICAL | 9.8 | 0.7% | Oct 27, 2023 | A vulnerability was found in Shanghai CTI Navigation CTI Monitoring and Early Warning System 2.2. It has been classified... |
| CVE-2023-46604 | CRITICAL | 9.8 | 99.7% | Oct 27, 2023 | The Java OpenWire protocol marshaller is vulnerable to Remote Code Execution. This vulnerability may allow a remote att... |
| CVE-2023-5807 | CRITICAL | 9.8 | 0.5% | Oct 27, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TRtek Software Edu... |
| CVE-2023-45499 | CRITICAL | 9.8 | 7.9% | Oct 27, 2023 | VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain hardcoded credentials. |
| CVE-2023-45498 | CRITICAL | 9.8 | 20.5% | Oct 27, 2023 | VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain a command injection vulnerability... |
| CVE-2023-5805 | CRITICAL | 9.8 | 0.6% | Oct 26, 2023 | A vulnerability was found in SourceCodester Simple Real Estate Portal System 1.0. It has been classified as critical. Af... |
| CVE-2023-42406 | CRITICAL | 9.8 | 1.9% | Oct 26, 2023 | SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to ob... |
| CVE-2023-46747 | CRITICAL | 9.8 | 96.5% | Oct 26, 2023 | Undisclosed requests may bypass configuration utility authentication, allowing an attacker with network access to the BI... |
| CVE-2023-46665 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | Sielco PolyEco1000 is vulnerable to an authentication bypass vulnerability due to an attacker modifying... |
| CVE-2023-46664 | CRITICAL | 9.1 | 0.5% | Oct 26, 2023 | Sielco PolyEco1000 is vulnerable to an improper access control vulnerability when the application provides ... |
| CVE-2023-39726 | CRITICAL | 9.8 | 1.0% | Oct 26, 2023 | An issue in Mintty v.3.6.4 and before allows a remote attacker to execute arbitrary code via crafted commands to the ter... |
| CVE-2023-5804 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as critical. This issue... |
| CVE-2023-5754 | CRITICAL | 9.8 | 0.5% | Oct 26, 2023 | Sielco PolyEco1000 uses a weak set of default administrative credentials that can be easily guessed in remote passw... |
| CVE-2023-46661 | CRITICAL | 9.8 | 0.5% | Oct 26, 2023 | Sielco PolyEco1000 is vulnerable to an attacker escalating their privileges by modifying passwords in POST requests. ... |
| CVE-2023-44267 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | Online Art Gallery v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'lnm' parameter of ... |
| CVE-2023-0897 | CRITICAL | 9.8 | 0.5% | Oct 26, 2023 | Sielco PolyEco1000 is vulnerable to a session hijack vulnerability due to the cookie being vulnerable to a brute force ... |
| CVE-2023-5794 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | A vulnerability was found in PHPGurukul Online Railway Catering System 1.0. It has been classified as critical. Affected... |
| CVE-2023-46435 | CRITICAL | 9.8 | 0.6% | Oct 26, 2023 | Sourcecodester Packers and Movers Management System v1.0 is vulnerable to SQL Injection via mpms/?p=services/view_servic... |
| CVE-2023-5792 | CRITICAL | 9.8 | 0.6% | Oct 26, 2023 | A vulnerability has been found in SourceCodester Sticky Notes App 1.0 and classified as critical. This vulnerability aff... |
| CVE-2023-5790 | CRITICAL | 9.8 | 0.8% | Oct 26, 2023 | A vulnerability classified as critical was found in SourceCodester File Manager App 1.0. Affected by this vulnerability ... |
| CVE-2023-43208 | CRITICAL | 9.8 | 82.7% | Oct 26, 2023 | NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that ... |
| CVE-2023-42769 | CRITICAL | 9.8 | 0.8% | Oct 26, 2023 | The cookie session ID is of insufficient length and can be exploited by brute force, which may allow a remote attacker ... |
| CVE-2023-5784 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. Affected by t... |
| CVE-2023-45869 | CRITICAL | 9 | 0.8% | Oct 26, 2023 | ILIAS 7.25 (2023-09-12) allows any authenticated user to execute arbitrary operating system commands remotely, when a hi... |
| CVE-2023-5782 | CRITICAL | 9.8 | 0.7% | Oct 26, 2023 | A vulnerability, which was classified as critical, was found in Tongda OA 2017 up to 11.10. Affected is an unknown funct... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now