2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-44208CRITICAL9.1Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr...
CVE-2023-2809CRITICAL9.8Plaintext credential usage vulnerability in Sage 200 Spain 2023.38.001 version, the exploitation of which could allow a ...
CVE-2023-37404CRITICAL9.8IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to execute arbitrary code ...
CVE-2023-39647CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module “Theme...
CVE-2023-39651CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In the module “Theme Volty C...
CVE-2023-39649CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop. In the module “Theme ...
CVE-2023-39648CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module “Theme Volt...
CVE-2023-39646CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS Category Chain Slider module for PrestaShop. In the module “...
CVE-2023-44974CRITICAL9.8An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execut...
CVE-2023-44973CRITICAL9.8An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to exec...
CVE-2023-39645CRITICAL9.8Improper neutralization of SQL parameter in Theme Volty CMS Payment Icon module for PrestaShop. In the module “Theme Vol...
CVE-2023-33273CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter url within the WGET check function is vulnerable to OS c...
CVE-2023-33272CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter ip within the Ping check function is vulnerable to OS co...
CVE-2023-33271CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter common_name within the SSL Certificate check function is...
CVE-2023-33270CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter url within the Curl check function is vulnerable to OS c...
CVE-2023-33269CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter options within the WGET check function is vulnerable to ...
CVE-2023-33268CRITICAL9.8An issue was discovered in DTS Monitoring 3.57.0. The parameter port within the SSL Certificate check function is vulner...
CVE-2023-40830CRITICAL9.8Tenda AC6 v15.03.05.19 is vulnerable to Buffer Overflow as the Index parameter does not verify the length.
CVE-2023-5350CRITICAL9.1 SQL Injection in GitHub repository salesagility/suitecrm prior to 7.14.1.
CVE-2023-3654CRITICAL9.8cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are...
CVE-2023-3656CRITICAL9.8cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are...
CVE-2023-33028CRITICAL9.8Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
CVE-2023-24855CRITICAL9.8Memory corruption in Modem while processing security related configuration before AS Security Exchange.
CVE-2023-22385CRITICAL9.8Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
CVE-2023-43980CRITICAL9.8Presto Changeo testsitecreator up to v1.1.1 was discovered to contain a SQL injection vulnerability via the component di...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now