2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21407 | HIGH | 8.8 | 0.6% | Aug 3, 2023 | A broken access control was found allowing for privileged escalation of the operator account to gain administrator priv... |
| CVE-2023-4115 | MEDIUM | 6.1 | 5.2% | Aug 3, 2023 | A vulnerability classified as problematic has been found in PHP Jabbers Cleaning Business 1.0. Affected is an unknown fu... |
| CVE-2023-4114 | MEDIUM | 6.1 | 5.1% | Aug 3, 2023 | A vulnerability was found in PHP Jabbers Night Club Booking Software 1.0. It has been rated as problematic. This issue a... |
| CVE-2023-38748 | HIGH | 7.8 | 0.2% | Aug 3, 2023 | Use after free vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a ... |
| CVE-2023-38747 | HIGH | 7.8 | 0.2% | Aug 3, 2023 | Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. ... |
| CVE-2023-4113 | MEDIUM | 6.1 | 5.2% | Aug 3, 2023 | A vulnerability was found in PHP Jabbers Service Booking Script 1.0. It has been declared as problematic. This vulnerabi... |
| CVE-2023-4112 | MEDIUM | 6.1 | 5.2% | Aug 3, 2023 | A vulnerability was found in PHP Jabbers Shuttle Booking Software 1.0. It has been classified as problematic. This affec... |
| CVE-2023-3932 | MEDIUM | 6.5 | 0.9% | Aug 3, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.0.8, all versions startin... |
| CVE-2023-3346 | CRITICAL | 9.8 | 1.7% | Aug 3, 2023 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in MITSUBSHI CNC Series allows a re... |
| CVE-2023-38746 | HIGH | 7.8 | 0.2% | Aug 3, 2023 | Out-of-bounds read vulnerability/issue exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By... |
| CVE-2023-38744 | HIGH | 7.5 | 0.7% | Aug 3, 2023 | Denial-of-service (DoS) vulnerability due to improper validation of specified type of input issue exists in the built-in... |
| CVE-2023-4127 | MEDIUM | 5.9 | 0.4% | Aug 3, 2023 | Race Condition within a Thread in GitHub repository answerdev/answer prior to v1.1.1. |
| CVE-2023-4126 | HIGH | 8.8 | 0.5% | Aug 3, 2023 | Insufficient Session Expiration in GitHub repository answerdev/answer prior to v1.1.0. |
| CVE-2023-4125 | HIGH | 8.8 | 0.7% | Aug 3, 2023 | Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0. |
| CVE-2023-4124 | MEDIUM | 6.5 | 0.5% | Aug 3, 2023 | Missing Authorization in GitHub repository answerdev/answer prior to v1.1.1. |
| CVE-2023-4111 | MEDIUM | 6.1 | 2.5% | Aug 3, 2023 | A vulnerability was found in PHP Jabbers Bus Reservation System 1.1 and classified as problematic. Affected by this issu... |
| CVE-2023-4110 | MEDIUM | 6.1 | 1.8% | Aug 3, 2023 | A vulnerability has been found in PHP Jabbers Availability Booking Calendar 5.0 and classified as problematic. Affected ... |
| CVE-2023-39144 | HIGH | 7.5 | 0.4% | Aug 3, 2023 | Element55 KnowMore appliances version 21 and older was discovered to store passwords in plaintext. |
| CVE-2023-37679 | CRITICAL | 9.8 | 97.1% | Aug 3, 2023 | A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary com... |
| CVE-2023-37364 | CRITICAL | 9.1 | 0.5% | Aug 3, 2023 | In WS-Inc J WBEM Server 4.7.4 before 4.7.5, the CIM-XML protocol adapter does not disable entity resolution. This allows... |
| CVE-2023-34196 | HIGH | 8.2 | 0.4% | Aug 3, 2023 | In the Keyfactor EJBCA before 8.0.0, the RA web certificate distribution servlet /ejbca/ra/cert allows partial denial of... |
| CVE-2023-38958 | MEDIUM | 5.3 | 0.3% | Aug 3, 2023 | An access control issue in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to arbitrarily close and open th... |
| CVE-2023-38956 | HIGH | 7.5 | 0.6% | Aug 3, 2023 | A path traversal vulnerability in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to read arbitrary files v... |
| CVE-2023-38955 | HIGH | 7.5 | 0.5% | Aug 3, 2023 | ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information about all managed devices, ... |
| CVE-2023-38954 | CRITICAL | 9.8 | 0.5% | Aug 3, 2023 | ZKTeco BioAccess IVS v3.3.1 was discovered to contain a SQL injection vulnerability. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now