2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38211 | HIGH | 7.8 | 0.3% | Aug 9, 2023 | Adobe Dimension version 3.4.9 is affected by a Use After Free vulnerability that could result in arbitrary code executio... |
| CVE-2023-24471 | MEDIUM | 6.5 | 0.4% | Aug 9, 2023 | An access control vulnerability was found, due to the restrictions that are applied on actual assertions not being enfor... |
| CVE-2023-23574 | HIGH | 8.8 | 0.5% | Aug 9, 2023 | A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the alerts_... |
| CVE-2023-22843 | MEDIUM | 4.8 | 0.3% | Aug 9, 2023 | An authenticated attacker with administrative access to the web management interface can inject malicious JavaScript cod... |
| CVE-2023-22378 | MEDIUM | 6.5 | 0.5% | Aug 9, 2023 | A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the sorting... |
| CVE-2023-38209 | MEDIUM | 6.5 | 0.7% | Aug 9, 2023 | Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Inc... |
| CVE-2023-38208 | HIGH | 7.2 | 2.3% | Aug 9, 2023 | Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Imp... |
| CVE-2023-38207 | HIGH | 7.5 | 0.8% | Aug 9, 2023 | Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by a XML ... |
| CVE-2023-24477 | HIGH | 7 | 0.1% | Aug 9, 2023 | In certain conditions, depending on timing and the usage of the Chrome web browser, Guardian/CMC versions before 22.6.2 ... |
| CVE-2023-37864 | HIGH | 7.2 | 0.3% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges... |
| CVE-2023-37863 | HIGH | 7.2 | 0.7% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges... |
| CVE-2023-37862 | HIGH | 8.2 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access ... |
| CVE-2023-37861 | HIGH | 8.8 | 0.9% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated remote attacker can execute c... |
| CVE-2023-37860 | HIGH | 7.5 | 0.6% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain t... |
| CVE-2023-37859 | HIGH | 7.2 | 0.6% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privilege... |
| CVE-2023-37858 | MEDIUM | 4.9 | 0.3% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p... |
| CVE-2023-37857 | HIGH | 7.2 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p... |
| CVE-2023-37856 | MEDIUM | 4.3 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able ... |
| CVE-2023-37855 | MEDIUM | 4.3 | 0.4% | Aug 9, 2023 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able ... |
| CVE-2023-33934 | CRITICAL | 9.1 | 1.1% | Aug 9, 2023 | Improper Input Validation vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Tr... |
| CVE-2023-26310 | CRITICAL | 9.8 | 1.0% | Aug 9, 2023 | There is a command injection problem in the old version of the mobile phone backup app. |
| CVE-2023-2905 | HIGH | 8.8 | 1.0% | Aug 9, 2023 | Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, C... |
| CVE-2023-4243 | HIGH | 8.8 | 0.8% | Aug 9, 2023 | The FULL - Customer plugin for WordPress is vulnerable to Arbitrary File Upload via the /install-plugin REST route in ve... |
| CVE-2023-4242 | MEDIUM | 4.3 | 0.4% | Aug 9, 2023 | The FULL - Customer plugin for WordPress is vulnerable to Information Disclosure via the /health REST route in versions ... |
| CVE-2023-38752 | MEDIUM | 4.3 | 0.4% | Aug 9, 2023 | Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now