2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39001 | CRITICAL | 9.8 | 3.0% | Aug 9, 2023 | A command injection vulnerability in the component diag_backup.php of OPNsense Community Edition before 23.7 and Busines... |
| CVE-2023-39000 | MEDIUM | 6.1 | 0.5% | Aug 9, 2023 | A reflected cross-site scripting (XSS) vulnerability in the component /ui/diagnostics/log/core/ of OPNsense Community Ed... |
| CVE-2023-38999 | MEDIUM | 6.5 | 0.3% | Aug 9, 2023 | A Cross-Site Request Forgery (CSRF) in the System Halt API (/system/halt) of OPNsense Community Edition before 23.7 and ... |
| CVE-2023-38998 | MEDIUM | 6.1 | 0.5% | Aug 9, 2023 | An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows a... |
| CVE-2023-38997 | HIGH | 7.2 | 1.1% | Aug 9, 2023 | A directory traversal vulnerability in the Captive Portal templates of OPNsense Community Edition before 23.7 and Busine... |
| CVE-2023-23346 | HIGH | 7.1 | 0.1% | Aug 9, 2023 | HCL DRYiCE MyCloud is affected by the use of a broken cryptographic algorithm. An attacker can potentially compromise t... |
| CVE-2023-39531 | MEDIUM | 6.8 | 0.3% | Aug 9, 2023 | Sentry is an error tracking and performance monitoring platform. Starting in version 10.0.0 and prior to version 23.7.2,... |
| CVE-2023-40012 | HIGH | 7.5 | 0.2% | Aug 9, 2023 | uthenticode is a small cross-platform library for partially verifying Authenticode digital signatures. Versions of uthen... |
| CVE-2023-3518 | HIGH | 7.3 | 0.4% | Aug 9, 2023 | HashiCorp Consul and Consul Enterprise 1.16.0 when using JWT Auth for service mesh incorrectly allows/denies access rega... |
| CVE-2023-39969 | CRITICAL | 9.8 | 0.5% | Aug 9, 2023 | uthenticode is a small cross-platform library for partially verifying Authenticode digital signatures. Version 1.0.9 of ... |
| CVE-2023-4273 | MEDIUM | 6.7 | 0.7% | Aug 9, 2023 | A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file nam... |
| CVE-2023-3953 | MEDIUM | 5.3 | 0.2% | Aug 9, 2023 | A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could caus... |
| CVE-2023-34545 | CRITICAL | 9.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability in CSZCMS 1.3.0 allows remote attackers to run arbitrary SQL commands via p parameter or t... |
| CVE-2023-33953 | HIGH | 7.5 | 0.4% | Aug 9, 2023 | gRPC contains a vulnerability that allows hpack table accounting errors could lead to unwanted disconnects between clien... |
| CVE-2023-32782 | HIGH | 7.2 | 52.1% | Aug 9, 2023 | A command injection was identified in PRTG 23.2.84.1566 and earlier versions in the Dicom C-ECHO sensor where an authent... |
| CVE-2023-32781 | HIGH | 7.2 | 12.3% | Aug 9, 2023 | A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an au... |
| CVE-2023-31452 | HIGH | 8.8 | 0.5% | Aug 9, 2023 | A cross-site request forgery (CSRF) token bypass was identified in PRTG 23.2.84.1566 and earlier versions that allows re... |
| CVE-2023-31450 | MEDIUM | 4.7 | 0.4% | Aug 9, 2023 | A path traversal vulnerability was identified in the SQL v2 sensors in PRTG 23.2.84.1566 and earlier versions where an a... |
| CVE-2023-31449 | MEDIUM | 4.7 | 0.4% | Aug 9, 2023 | A path traversal vulnerability was identified in the WMI Custom sensor in PRTG 23.2.84.1566 and earlier versions where a... |
| CVE-2023-31448 | MEDIUM | 4.7 | 0.4% | Aug 9, 2023 | A path traversal vulnerability was identified in the HL7 sensor in PRTG 23.2.84.1566 and earlier versions where an authe... |
| CVE-2023-24015 | MEDIUM | 4.3 | 0.5% | Aug 9, 2023 | A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forc... |
| CVE-2023-23903 | MEDIUM | 4.9 | 0.5% | Aug 9, 2023 | An authenticated administrator can upload a SAML configuration file with the wrong format, with the application not chec... |
| CVE-2023-3632 | CRITICAL | 9.8 | 0.6% | Aug 9, 2023 | Use of Hard-coded Cryptographic Key vulnerability in Sifir Bes Education and Informatics Kunduz - Homework Helper App al... |
| CVE-2023-38213 | MEDIUM | 5.5 | 0.3% | Aug 9, 2023 | Adobe Dimension version 3.4.9 is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensit... |
| CVE-2023-38212 | HIGH | 7.8 | 0.3% | Aug 9, 2023 | Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now