2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4737 | CRITICAL | 9.8 | 0.8% | Sep 27, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hedef Tracking Adm... |
| CVE-2023-4565 | MEDIUM | 5.3 | 0.5% | Sep 27, 2023 | Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may ca... |
| CVE-2023-4506 | MEDIUM | 6.5 | 0.7% | Sep 27, 2023 | The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Passback in versions up t... |
| CVE-2023-4505 | MEDIUM | 4.9 | 0.7% | Sep 27, 2023 | The Staff / Employee Business Directory for Active Directory plugin for WordPress is vulnerable to LDAP Passback in vers... |
| CVE-2023-4423 | MEDIUM | 4.8 | 0.5% | Sep 27, 2023 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ... |
| CVE-2023-4264 | CRITICAL | 9.6 | 0.9% | Sep 27, 2023 | Potential buffer overflow vulnerabilities n the Zephyr Bluetooth subsystem. |
| CVE-2023-4262 | — | — | — | Sep 27, 2023 | Rejected reason: User data field is not attacker controlled |
| CVE-2023-4260 | CRITICAL | 10 | 0.8% | Sep 27, 2023 | Potential off-by-one buffer overflow vulnerability in the Zephyr fuse file system. |
| CVE-2023-4065 | MEDIUM | 5.5 | 0.2% | Sep 27, 2023 | A flaw was found in Red Hat AMQ Broker Operator, where it displayed a password defined in ActiveMQArtemisAddress CR, sho... |
| CVE-2023-4003 | MEDIUM | 6.8 | 0.5% | Sep 27, 2023 | One Identity Password Manager version 5.9.7.1 - An unauthenticated attacker with physical access to a workstation may u... |
| CVE-2023-44216 | MEDIUM | 5.3 | 1.8% | Sep 27, 2023 | PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that... |
| CVE-2023-44207 | MEDIUM | 5.4 | 0.5% | Sep 27, 2023 | Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cy... |
| CVE-2023-44206 | CRITICAL | 9.1 | 0.8% | Sep 27, 2023 | Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Ac... |
| CVE-2023-44205 | MEDIUM | 5.3 | 0.6% | Sep 27, 2023 | Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Prote... |
| CVE-2023-44172 | CRITICAL | 9.8 | 1.2% | Sep 27, 2023 | SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_weixin.php. |
| CVE-2023-44171 | CRITICAL | 9.8 | 1.2% | Sep 27, 2023 | SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_smtp.php. |
| CVE-2023-44170 | CRITICAL | 9.8 | 1.2% | Sep 27, 2023 | SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ping.php. |
| CVE-2023-44169 | CRITICAL | 9.8 | 1.2% | Sep 27, 2023 | SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_notify.php. |
| CVE-2023-44161 | MEDIUM | 6.5 | 0.2% | Sep 27, 2023 | Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber... |
| CVE-2023-44160 | MEDIUM | 6.5 | 0.2% | Sep 27, 2023 | Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber... |
| CVE-2023-44159 | HIGH | 7.5 | 0.4% | Sep 27, 2023 | Sensitive information disclosure due to cleartext storage of sensitive information. The following products are affected:... |
| CVE-2023-44158 | HIGH | 7.5 | 0.6% | Sep 27, 2023 | Sensitive information disclosure due to insufficient token field masking. The following products are affected: Acronis C... |
| CVE-2023-44157 | HIGH | 7.8 | 0.2% | Sep 27, 2023 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protec... |
| CVE-2023-44156 | HIGH | 7.5 | 0.9% | Sep 27, 2023 | Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Protect 15 (Li... |
| CVE-2023-44155 | HIGH | 7.5 | 0.7% | Sep 27, 2023 | Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect 15 (Linux, Wind... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now