2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34625 | HIGH | 8.1 | 0.9% | Jul 20, 2023 | ShowMojo MojoBox Digital Lockbox 1.4 is vulnerable to Authentication Bypass. The implementation of the lock opening mech... |
| CVE-2023-31753 | CRITICAL | 9.8 | 1.1% | Jul 20, 2023 | SQL injection vulnerability in diskusi.php in eNdonesia 8.7, allows an attacker to execute arbitrary SQL commands via th... |
| CVE-2023-30200 | HIGH | 7.5 | 0.6% | Jul 20, 2023 | In the module “Image: WebP, Compress, Zoom, Lazy load, Alt & More” (ultimateimagetool) in versions up to 2.1.02 from Adv... |
| CVE-2023-3792 | MEDIUM | 6.5 | 0.6% | Jul 20, 2023 | A vulnerability was found in Beijing Netcon NS-ASG 6.3. It has been classified as problematic. This affects an unknown p... |
| CVE-2023-38617 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit... |
| CVE-2023-38523 | MEDIUM | 5.3 | 0.8% | Jul 20, 2023 | The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, with... |
| CVE-2023-37602 | MEDIUM | 6.1 | 0.6% | Jul 20, 2023 | An arbitrary file upload vulnerability in the component /workplace#!explorer of Alkacon OpenCMS v15.0 allows attackers t... |
| CVE-2023-37601 | HIGH | 7.5 | 1.0% | Jul 20, 2023 | Office Suite Premium v10.9.1.42602 was discovered to contain a local file inclusion (LFI) vulnerability via the componen... |
| CVE-2023-37600 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit... |
| CVE-2023-37165 | CRITICAL | 9.8 | 1.7% | Jul 20, 2023 | Millhouse-Project v1.414 was discovered to contain a remote code execution (RCE) vulnerability via the component /add_po... |
| CVE-2023-37164 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | Diafan CMS v6.0 was discovered to contain a reflected cross-site scripting via the cat_id parameter at /shop/?module=sho... |
| CVE-2023-3791 | CRITICAL | 9.8 | 0.5% | Jul 20, 2023 | A vulnerability was found in IBOS OA 4.5.5 and classified as critical. Affected by this issue is the function actionExpo... |
| CVE-2023-38335 | MEDIUM | 5.3 | 1.1% | Jul 20, 2023 | Omnis Studio 10.22.00 has incorrect access control. It advertises a feature for making Omnis libraries "always private" ... |
| CVE-2023-38334 | MEDIUM | 6.5 | 0.8% | Jul 20, 2023 | Omnis Studio 10.22.00 has incorrect access control. It advertises an irreversible feature for locking classes within Omn... |
| CVE-2023-37728 | MEDIUM | 6.1 | 1.4% | Jul 20, 2023 | IceWarp v10.2.1 was discovered to contain cross-site scripting (XSS) vulnerability via the color parameter. |
| CVE-2023-31462 | HIGH | 8.8 | 0.9% | Jul 20, 2023 | An issue was discovered in SteelSeries GG 36.0.0. An attacker can change values in an unencrypted database that is writa... |
| CVE-2023-31461 | HIGH | 7.5 | 0.8% | Jul 20, 2023 | Attackers can exploit an open API listener on SteelSeries GG 36.0.0 to create a sub-application that will be executed au... |
| CVE-2023-3790 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability has been found in Boom CMS 8.0.7 and classified as problematic. Affected by this vulnerability is the fu... |
| CVE-2023-37471 | CRITICAL | 9.8 | 1.0% | Jul 20, 2023 | Open Access Management (OpenAM) is an access management solution that includes Authentication, SSO, Authorization, Feder... |
| CVE-2023-3789 | MEDIUM | 6.1 | 0.5% | Jul 20, 2023 | A vulnerability, which was classified as problematic, was found in PaulPrinting CMS 2018. Affected is an unknown functio... |
| CVE-2023-3788 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability, which was classified as problematic, has been found in ActiveITzone Active Super Shop CMS 2.5. This iss... |
| CVE-2023-38203 | CRITICAL | 9.8 | 97.0% | Jul 20, 2023 | Adobe ColdFusion versions 2018u17 (and earlier), 2021u7 (and earlier) and 2023u1 (and earlier) are affected by a Deseria... |
| CVE-2023-3787 | MEDIUM | 5.4 | 0.6% | Jul 20, 2023 | A vulnerability classified as problematic was found in Codecanyon Tiva Events Calender 1.4. This vulnerability affects u... |
| CVE-2023-3347 | MEDIUM | 5.9 | 0.4% | Jul 20, 2023 | A vulnerability was found in Samba's SMB2 packet signing mechanism. The SMB2 packet signing is not enforced if an admin ... |
| CVE-2023-34968 | MEDIUM | 5.3 | 1.2% | Jul 20, 2023 | A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now