2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-44208 | CRITICAL | 9.1 | 0.3% | Oct 4, 2023 | Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr... |
| CVE-2023-2809 | CRITICAL | 9.8 | 0.4% | Oct 4, 2023 | Plaintext credential usage vulnerability in Sage 200 Spain 2023.38.001 version, the exploitation of which could allow a ... |
| CVE-2023-37404 | CRITICAL | 9.8 | 0.8% | Oct 4, 2023 | IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to execute arbitrary code ... |
| CVE-2023-39647 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module “Theme... |
| CVE-2023-39651 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In the module “Theme Volty C... |
| CVE-2023-39649 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop. In the module “Theme ... |
| CVE-2023-39648 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module “Theme Volt... |
| CVE-2023-39646 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS Category Chain Slider module for PrestaShop. In the module “... |
| CVE-2023-44974 | CRITICAL | 9.8 | 19.1% | Oct 3, 2023 | An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execut... |
| CVE-2023-44973 | CRITICAL | 9.8 | 1.0% | Oct 3, 2023 | An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to exec... |
| CVE-2023-39645 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Improper neutralization of SQL parameter in Theme Volty CMS Payment Icon module for PrestaShop. In the module “Theme Vol... |
| CVE-2023-33273 | CRITICAL | 9.8 | 2.5% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter url within the WGET check function is vulnerable to OS c... |
| CVE-2023-33272 | CRITICAL | 9.8 | 2.5% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter ip within the Ping check function is vulnerable to OS co... |
| CVE-2023-33271 | CRITICAL | 9.8 | 1.6% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter common_name within the SSL Certificate check function is... |
| CVE-2023-33270 | CRITICAL | 9.8 | 2.5% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter url within the Curl check function is vulnerable to OS c... |
| CVE-2023-33269 | CRITICAL | 9.8 | 2.0% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter options within the WGET check function is vulnerable to ... |
| CVE-2023-33268 | CRITICAL | 9.8 | 1.2% | Oct 3, 2023 | An issue was discovered in DTS Monitoring 3.57.0. The parameter port within the SSL Certificate check function is vulner... |
| CVE-2023-40830 | CRITICAL | 9.8 | 0.7% | Oct 3, 2023 | Tenda AC6 v15.03.05.19 is vulnerable to Buffer Overflow as the Index parameter does not verify the length. |
| CVE-2023-5350 | CRITICAL | 9.1 | 1.9% | Oct 3, 2023 | SQL Injection in GitHub repository salesagility/suitecrm prior to 7.14.1. |
| CVE-2023-3654 | CRITICAL | 9.8 | 0.3% | Oct 3, 2023 | cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are... |
| CVE-2023-3656 | CRITICAL | 9.8 | 1.0% | Oct 3, 2023 | cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are... |
| CVE-2023-33028 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Memory corruption in WLAN Firmware while doing a memory copy of pmk cache. |
| CVE-2023-24855 | CRITICAL | 9.8 | 0.5% | Oct 3, 2023 | Memory corruption in Modem while processing security related configuration before AS Security Exchange. |
| CVE-2023-22385 | CRITICAL | 9.8 | 0.4% | Oct 3, 2023 | Memory Corruption in Data Modem while making a MO call or MT VOLTE call. |
| CVE-2023-43980 | CRITICAL | 9.8 | 0.5% | Oct 2, 2023 | Presto Changeo testsitecreator up to v1.1.1 was discovered to contain a SQL injection vulnerability via the component di... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now