2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25533 | CRITICAL | 9.8 | 0.7% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the web UI, where an attacker may cause improper input validation. A suc... |
| CVE-2023-25531 | CRITICAL | 9.8 | 0.4% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause insufficient protection of credentials... |
| CVE-2023-25530 | CRITICAL | 9.8 | 0.7% | Sep 20, 2023 | NVIDIA DGX H100 BMC contains a vulnerability in the KVM service, where an attacker may cause improper input validation. ... |
| CVE-2023-25528 | CRITICAL | 9.8 | 0.8% | Sep 20, 2023 | NVIDIA DGX H100 baseboard management controller (BMC) contains a vulnerability in a web server plugin, where an unauthen... |
| CVE-2023-42793 | CRITICAL | 9.8 | 100.0% | Sep 19, 2023 | In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible |
| CVE-2023-4092 | CRITICAL | 9.8 | 0.6% | Sep 19, 2023 | SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version. The exploitation of this vulnerability could allow... |
| CVE-2023-0773 | CRITICAL | 9.8 | 1.2% | Sep 19, 2023 | The vulnerability exists in Uniview IP Camera due to identification and authentication failure at its web-based manageme... |
| CVE-2023-41387 | CRITICAL | 9.1 | 0.7% | Sep 19, 2023 | A SQL injection in the flutter_downloader component through 1.11.1 for iOS allows remote attackers to steal session toke... |
| CVE-2023-5009 | CRITICAL | 9.8 | 8.3% | Sep 19, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions startin... |
| CVE-2023-26143 | CRITICAL | 9.1 | 0.9% | Sep 19, 2023 | Versions of the package blamer before 1.0.4 are vulnerable to Arbitrary Argument Injection via the blameByFile() API. Th... |
| CVE-2023-42454 | CRITICAL | 9.1 | 0.6% | Sep 18, 2023 | SQLpage is a SQL-only webapp builder. Someone using SQLpage versions prior to 0.11.1, whose SQLpage instance is exposed ... |
| CVE-2023-41084 | CRITICAL | 9.8 | 0.6% | Sep 18, 2023 | Session management within the web application is incorrect and allows attackers to steal session cookies to p... |
| CVE-2023-33831 | CRITICAL | 9.8 | 13.7% | Sep 18, 2023 | A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute... |
| CVE-2023-41030 | CRITICAL | 9.8 | 0.6% | Sep 18, 2023 | Hard-coded credentials in Juplink RX4-1500 versions V1.0.2 through V1.0.5 allow unauthenticated attackers to log in to t... |
| CVE-2023-42320 | CRITICAL | 9.8 | 0.9% | Sep 18, 2023 | Buffer Overflow vulnerability in Tenda AC10V4 v.US_AC10V4.0si_V16.03.10.13_cn_TDC01 allows a remote attacker to cause a ... |
| CVE-2023-42359 | CRITICAL | 9.8 | 0.7% | Sep 18, 2023 | SQL injection vulnerability in Exam Form Submission in PHP with Source Code v.1.0 allows a remote attacker to escalate p... |
| CVE-2023-5034 | CRITICAL | 9.8 | 0.6% | Sep 18, 2023 | A vulnerability classified as problematic was found in SourceCodester My Food Recipe 1.0. This vulnerability affects unk... |
| CVE-2023-5020 | CRITICAL | 9.8 | 0.7% | Sep 17, 2023 | A vulnerability, which was classified as critical, has been found in 07FLY CRM V2. This issue affects some unknown proce... |
| CVE-2023-5019 | CRITICAL | 9.8 | 0.7% | Sep 17, 2023 | A vulnerability classified as critical was found in Tongda OA. This vulnerability affects unknown code of the file gener... |
| CVE-2023-5018 | CRITICAL | 9.8 | 0.4% | Sep 17, 2023 | A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0. This affe... |
| CVE-2023-5017 | CRITICAL | 9.8 | 0.4% | Sep 17, 2023 | A vulnerability was found in lmxcms up to 1.41. It has been rated as critical. Affected by this issue is some unknown fu... |
| CVE-2023-5016 | CRITICAL | 9.8 | 0.9% | Sep 17, 2023 | A vulnerability was found in spider-flow up to 0.5.0. It has been declared as critical. Affected by this vulnerability i... |
| CVE-2023-5014 | CRITICAL | 9.8 | 0.6% | Sep 17, 2023 | A vulnerability was found in Sakshi2610 Food Ordering Website 1.0 and classified as critical. This issue affects some un... |
| CVE-2023-42336 | CRITICAL | 9.8 | 1.1% | Sep 16, 2023 | An issue in NETIS SYSTEMS WF2409Ev4 v.1.0.1.705 allows a remote attacker to execute arbitrary code and obtain sensitive ... |
| CVE-2023-39612 | CRITICAL | 9 | 0.7% | Sep 16, 2023 | A cross-site scripting (XSS) vulnerability in FileBrowser before v2.23.0 allows an authenticated attacker to escalate pr... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now