2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-40622CRITICAL9.9SAP BusinessObjects Business Intelligence Platform (Promotion Management) - versions 420, 430, under certain condition a...
CVE-2023-40309CRITICAL9.8SAP CommonCryptoLib does not perform necessary authentication checks, which may result in missing or wrong authorization...
CVE-2023-39069CRITICAL9.8An issue in StrangeBee TheHive v.5.0.8, v.4.1.21 and Cortex v.3.1.6 allows a remote attacker to gain privileges via Acti...
CVE-2023-4897CRITICAL9.8Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.
CVE-2023-35681CRITICAL9.8In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. Thi...
CVE-2023-40946CRITICAL9.8Schoolmate 1.3 is vulnerable to SQL Injection in the variable $username from SESSION in ValidateLogin.php.
CVE-2023-40945CRITICAL9.8Sourcecodester Doctor Appointment System 1.0 is vulnerable to SQL Injection in the variable $userid at doctors\myDetails...
CVE-2023-40944CRITICAL9.8Schoolmate 1.3 is vulnerable to SQL Injection in the variable $schoolname from Database at ~\header.php.
CVE-2023-40150CRITICAL9.8 Softneta MedDream PACS does not perform an authentication check and performs some dangerous functionality, which could ...
CVE-2023-41256CRITICAL9.1 Dover Fueling Solutions MAGLINK LX Web Console Configuration versions 2.5.1, 2.5.2, 2.5.3, 2.6.1, 2.11, 3.0, 3.2, and 3...
CVE-2023-31069CRITICAL9.8An issue was discovered in TSplus Remote Access through 16.0.2.14. Credentials are stored as cleartext within the HTML s...
CVE-2023-31068CRITICAL9.8An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on so...
CVE-2023-31067CRITICAL9.8An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on so...
CVE-2023-30058CRITICAL9.8novel-plus 3.6.2 is vulnerable to SQL Injection.
CVE-2023-36140CRITICAL9.8In PHPJabbers Cleaning Business Software 1.0, there is no encryption on user passwords allowing an attacker to gain acce...
CVE-2023-42471CRITICAL9.8The wave.ai.browser application through 1.0.35 for Android allows a remote attacker to execute arbitrary JavaScript code...
CVE-2023-42470CRITICAL9.8The Imou Life com.mm.android.smartlifeiot application through 6.8.0 for Android allows Remote Code Execution via a craft...
CVE-2023-40039CRITICAL9.8An issue was discovered on ARRIS TG852G, TG862G, and TG1672G devices. A remote attacker (in proximity to a Wi-Fi network...
CVE-2023-4873CRITICAL9.8A vulnerability, which was classified as critical, was found in Byzoro Smart S45F Multi-Service Secure Gateway Intellige...
CVE-2023-4872CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Contact Manager App 1.0. This issue ...
CVE-2023-4871CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Contact Manager App 1.0. This vulnerability affects u...
CVE-2023-4866CRITICAL9.8A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0 and classified as critical. Thi...
CVE-2023-4852CRITICAL9.8A vulnerability was found in IBOS OA 4.5.5 and classified as critical. This issue affects some unknown processing of the...
CVE-2023-4851CRITICAL9.8A vulnerability has been found in IBOS OA 4.5.5 and classified as critical. This vulnerability affects unknown code of t...
CVE-2023-4850CRITICAL9.8A vulnerability, which was classified as critical, was found in IBOS OA 4.5.5. This affects an unknown part of the file ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now