2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51835 | MEDIUM | 6.8 | 7.3% | Feb 29, 2024 | An issue in TRENDnet TEW-822DRE v.1.03B02 allows a local attacker to execute arbitrary code via the parameters ipv4_ping... |
| CVE-2023-51775 | MEDIUM | 6.5 | 0.9% | Feb 29, 2024 | The jose4j component before 0.9.4 for Java allows attackers to cause a denial of service (CPU consumption) via a large p... |
| CVE-2023-50436 | MEDIUM | 5.3 | 0.2% | Feb 29, 2024 | An issue was discovered in Couchbase Server before 7.2.4. ns_server admin credentials are leaked in encoded form in the ... |
| CVE-2023-49932 | MEDIUM | 5.4 | 0.5% | Feb 29, 2024 | An issue was discovered in Couchbase Server before 7.2.4. An attacker can bypass SQL++ N1QL cURL host restrictions. |
| CVE-2023-49337 | MEDIUM | 4.8 | 0.5% | Feb 29, 2024 | Concrete CMS before 9.2.3 allows Stored XSS on the Admin Dashboard via /dashboard/system/basics/name. (8.5 and earlier a... |
| CVE-2023-48653 | MEDIUM | 4.3 | 0.3% | Feb 29, 2024 | Concrete CMS before 8.5.14 and 9 before 9.2.3 allows Cross Site Request Forgery (CSRF) via ccm/calendar/dialogs/event/de... |
| CVE-2023-48651 | MEDIUM | 4.3 | 0.3% | Feb 29, 2024 | Concrete CMS 9 before 9.2.3 is vulnerable to Cross Site Request Forgery (CSRF) at /ccm/system/dialogs/file/delete/1/subm... |
| CVE-2023-48650 | MEDIUM | 4.8 | 0.5% | Feb 29, 2024 | Concrete CMS before 8.5.14 and 9 before 9.2.3 is vulnerable to an admin adding a stored XSS payload via the Layout Prese... |
| CVE-2023-45874 | MEDIUM | 4.3 | 0.8% | Feb 29, 2024 | An issue was discovered in Couchbase Server through 7.2.2. A data reader may cause a denial of service (outage of reader... |
| CVE-2023-44347 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulne... |
| CVE-2023-44346 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2023-44345 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a Improper Input Validation vuln... |
| CVE-2023-44344 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2023-44343 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2023-44342 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2023-44341 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulne... |
| CVE-2023-43769 | MEDIUM | 6.3 | 0.4% | Feb 29, 2024 | An issue was discovered in Couchbase Server through 7.1.4 before 7.1.5 and before 7.2.1. There are Unauthenticated RMI S... |
| CVE-2023-41165 | MEDIUM | 4.8 | 0.4% | Feb 29, 2024 | An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.38 before 3.7.39, 3.10.0 through 3.11.26... |
| CVE-2023-37531 | MEDIUM | 4.8 | 0.4% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37530 | MEDIUM | 5.4 | 0.3% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37529 | MEDIUM | 5.4 | 0.3% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37495 | MEDIUM | 5.9 | 0.5% | Feb 29, 2024 | Internet passwords stored in Person documents in the Domino® Directory created using the "Add Person" action on the Peop... |
| CVE-2023-27151 | MEDIUM | 6.1 | 0.5% | Feb 29, 2024 | openCRX 5.2.0 was discovered to contain an HTML injection vulnerability for Search Criteria-Activity Number (in the Save... |
| CVE-2023-5617 | MEDIUM | 5.3 | 0.4% | Feb 28, 2024 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.6, including 9.5.x and 8.3.x, d... |
| CVE-2023-45873 | MEDIUM | 6.5 | 0.7% | Feb 28, 2024 | An issue was discovered in Couchbase Server through 7.2.2. A data reader may cause a denial of service (application exis... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now