2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31719 | CRITICAL | 9.8 | 27.4% | Sep 22, 2023 | FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin. |
| CVE-2023-43128 | CRITICAL | 9.8 | 2.4% | Sep 21, 2023 | D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of ... |
| CVE-2023-34576 | CRITICAL | 9.8 | 0.6% | Sep 21, 2023 | SQL injection vulnerability in updatepos.php in PrestaShop opartfaq through 1.0.3 allows remote attackers to run arbitra... |
| CVE-2023-42810 | CRITICAL | 9.8 | 1.8% | Sep 21, 2023 | systeminformation is a System Information Library for Node.JS. Versions 5.0.0 through 5.21.6 have a SSID Command Injecti... |
| CVE-2023-42279 | CRITICAL | 9.8 | 0.7% | Sep 21, 2023 | Dreamer CMS v4.1.3 was discovered to contain a SQL injection vulnerability via the model-form-management-field form. |
| CVE-2023-42807 | CRITICAL | 9.8 | 0.3% | Sep 21, 2023 | Frappe LMS is an open source learning management system. In versions 1.0.0 and prior, on the People Page of LMS, there w... |
| CVE-2023-34577 | CRITICAL | 9.8 | 0.7% | Sep 21, 2023 | SQL injection vulnerability in Prestashop opartplannedpopup 1.4.11 and earlier allows remote attackers to run arbitrary ... |
| CVE-2023-43632 | CRITICAL | 9.9 | 0.5% | Sep 21, 2023 | As noted in the “VTPM.md” file in the eve documentation, “VTPM is a server listening on port 8877 in EVE, exposing limi... |
| CVE-2023-43242 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter removeRuleList in form2IPQoSTcDel. |
| CVE-2023-43241 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter TXPower and GuardInt in SetWLanRadioS... |
| CVE-2023-43240 | CRITICAL | 9.8 | 12.2% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter sip_address in ipportFilter. |
| CVE-2023-43239 | CRITICAL | 9.8 | 12.2% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter flag_5G in showMACfilterMAC. |
| CVE-2023-43238 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter nvmacaddr in form2Dhcpip.cgi. |
| CVE-2023-43237 | CRITICAL | 9.8 | 12.2% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter macCloneMac in setMAC. |
| CVE-2023-43236 | CRITICAL | 9.8 | 0.9% | Sep 21, 2023 | D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter statuscheckpppoeuser in dir_setWan... |
| CVE-2023-43235 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter StartTime and EndTime in SetWifiDownS... |
| CVE-2023-4760 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | In Eclipse RAP versions from 3.0.0 up to and including 3.25.0, Remote Code Execution is possible on Windows when using t... |
| CVE-2023-4291 | CRITICAL | 9.8 | 1.0% | Sep 21, 2023 | Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are vulnerable to a remote code exe... |
| CVE-2023-43135 | CRITICAL | 9.8 | 0.8% | Sep 20, 2023 | There is an unauthorized access vulnerability in TP-LINK ER5120G 4.0 2.0.0 Build 210817 Rel.80868n, which allows attacke... |
| CVE-2023-39675 | CRITICAL | 9.8 | 0.8% | Sep 20, 2023 | SimpleImportProduct Prestashop Module v6.2.9 was discovered to contain a SQL injection vulnerability via the key paramet... |
| CVE-2023-36109 | CRITICAL | 9.8 | 2.0% | Sep 20, 2023 | Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_str... |
| CVE-2023-34575 | CRITICAL | 9.8 | 0.7% | Sep 20, 2023 | SQL injection vulnerability in PrestaShop opartsavecart through 2.0.7 allows remote attackers to run arbitrary SQL comma... |
| CVE-2023-42322 | CRITICAL | 9.8 | 0.7% | Sep 20, 2023 | Insecure Permissions vulnerability in icmsdev iCMS v.7.0.16 allows a remote attacker to obtain sensitive information. |
| CVE-2023-43134 | CRITICAL | 9.8 | 0.8% | Sep 20, 2023 | There is an unauthorized access vulnerability in Netis 360RAC1200 v1.3.4517, which allows attackers to obtain sensitive ... |
| CVE-2023-43375 | CRITICAL | 9.8 | 0.6% | Sep 20, 2023 | Hoteldruid v3.0.5 was discovered to contain multiple SQL injection vulnerabilities at /hoteldruid/clienti.php via the an... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now