2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40787 | CRITICAL | 9.8 | 19.4% | Aug 29, 2023 | In SpringBlade V3.6.0 when executing SQL query, the parameters submitted by the user are not wrapped in quotation marks,... |
| CVE-2023-23770 | CRITICAL | 9.8 | 0.5% | Aug 29, 2023 | Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interf... |
| CVE-2023-41361 | CRITICAL | 9.8 | 0.8% | Aug 29, 2023 | An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv softw... |
| CVE-2023-41360 | CRITICAL | 9.1 | 1.0% | Aug 29, 2023 | An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in a... |
| CVE-2023-41359 | CRITICAL | 9.1 | 1.0% | Aug 29, 2023 | An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_... |
| CVE-2023-39650 | CRITICAL | 9.8 | 3.6% | Aug 28, 2023 | Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability via the id parameter a... |
| CVE-2023-39652 | CRITICAL | 9.8 | 0.5% | Aug 28, 2023 | theme volty tvcmsvideotab up to v4.0.0 was discovered to contain a SQL injection vulnerability via the component TvcmsVi... |
| CVE-2023-41109 | CRITICAL | 9.8 | 64.1% | Aug 28, 2023 | SmartNode SN200 (aka SN200) 3.21.2-23021 allows unauthenticated OS Command Injection. |
| CVE-2023-39560 | CRITICAL | 9.8 | 4.1% | Aug 28, 2023 | ECTouch v2 was discovered to contain a SQL injection vulnerability via the $arr['id'] parameter at \default\helpers\inse... |
| CVE-2023-40846 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function sub_90998. |
| CVE-2023-40767 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in in PHPJabbers Make an Offer Widget v1.0. This issue occurs during password recovery, where ... |
| CVE-2023-40766 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in in PHPJabbers Ticket Support Script v3.2. This issue occurs during password recovery, where... |
| CVE-2023-40765 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Event Booking Calendar v4.0. This issue occurs during password recovery, where a... |
| CVE-2023-40764 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHP Jabbers Car Rental Script v3.0. This issue occurs during password recovery, where a dif... |
| CVE-2023-40763 | CRITICAL | 9.8 | 0.9% | Aug 28, 2023 | User enumeration is found in PHPJabbers Taxi Booking Script v2.0. This issue occurs during password recovery, where a di... |
| CVE-2023-40762 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Fundraising Script v1.0. This issue occurs during password recovery, where a dif... |
| CVE-2023-40761 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Yacht Listing Script v2.0. This issue occurs during password recovery, where a d... |
| CVE-2023-40760 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHP Jabbers Hotel Booking System v4.0. This issue occurs during password recovery, where a ... |
| CVE-2023-40759 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHP Jabbers Restaurant Booking Script v3.0. This issue occurs during password recovery, whe... |
| CVE-2023-40758 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Document Creator v1.0. This issue occurs during password recovery, where a diffe... |
| CVE-2023-40757 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Food Delivery Script v3.1. This issue occurs during password recovery, where a d... |
| CVE-2023-40756 | CRITICAL | 9.8 | 0.7% | Aug 28, 2023 | User enumeration is found in PHPJabbers Callback Widget v1.0. This issue occurs during password recovery, where a differ... |
| CVE-2023-40749 | CRITICAL | 9.8 | 3.3% | Aug 28, 2023 | PHPJabbers Food Delivery Script v3.0 is vulnerable to SQL Injection in the "column" parameter of index.php. |
| CVE-2023-40748 | CRITICAL | 9.8 | 2.9% | Aug 28, 2023 | PHPJabbers Food Delivery Script 3.0 has a SQL injection (SQLi) vulnerability in the "q" parameter of index.php. |
| CVE-2023-38029 | CRITICAL | 9.8 | 0.8% | Aug 28, 2023 | Saho’s attendance devices ADM100 and ADM-100FP has insufficient filtering for special characters and file type within t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now