CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2023-43623

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Mendix Forgot Password (Mendix 10 compatible) (All versions < V5.4.0), Mendix Forgot Password (Mendix 7 compatible) (All versions < V3.7.3), Mendix Forgot Password (Mendix 8 compatible) (All versions < V4.1.3), Mendix Forgot Password (Mendix 9 compatible) (All versions < V5.4.0). Applications using the affected module are vulnerable to user enumeration due to distinguishable responses. This could allow an unauthenticated remote attacker to determine if a user is valid or not, enabling a brute force attack with valid users.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-42796

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11). The web server of affected devices fails to properly sanitize user input for the /sicweb-ajax/tmproot/ endpoint. This could allow an authenticated remote attacker to traverse directories on the system and download arbitrary files. By exploring active session IDs, the vulnerability could potentially be leveraged to escalate privileges to the administrator role.

    Published: 10 Oct 2023
    6.6
    Medium

    CVE-2023-38640

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.22). The affected application is installed with specific files and folders with insecure permissions. This could allow an authenticated local attacker to read and modify configuration data in the context of the application process.

    Published: 10 Oct 2023
    4.4
    Medium

    CVE-2023-37195

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions). Affected devices insufficiently control continuous mapping of direct memory access (DMA) requests. This could allow local attackers with administrative privileges to cause a denial of service situation on the host. A physical power cycle is required to get the system working again.

    Published: 10 Oct 2023
    6.7
    Medium

    CVE-2023-37194

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions). The kernel memory of affected devices is exposed to user-mode via direct memory access (DMA) which could allow a local attacker with administrative privileges to execute arbitrary code on the host system without any restrictions.

    Published: 10 Oct 2023
    9.8
    Critical

    CVE-2023-36380

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)). The affected devices contain a hard-coded ID in the SSH `authorized_keys` configuration file. An attacker with knowledge of the corresponding private key could login to the device via SSH. Only devices with activated debug support are affected.

    Published: 10 Oct 2023
    8.3
    High

    CVE-2023-35796

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SINEMA Server V14 (All versions). The affected application improperly sanitizes certain SNMP configuration data retrieved from monitored devices. An attacker with access to a monitored device could perform a stored cross-site scripting (XSS) attack that may lead to arbitrary code execution with `SYSTEM` privileges on the application server. (ZDI-CAN-19823)

    Published: 10 Oct 2023
    7.8
    High

    CVE-2023-30900

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in Xpedition Layout Browser (All versions < VX.2.14). Affected application contains a stack overflow vulnerability when parsing a PCB file. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 10 Oct 2023
    7.8
    High

    CVE-2022-30527

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application assigns improper access rights to specific folders containing executable files and libraries. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.

    Published: 10 Oct 2023
    8.8
    High

    CVE-2023-4837

    Last Modified: 21 Nov 2024

    SmodBIP is vulnerable to Cross-Site Request Forgery, that could be used to induce logged in users to perform unintended actions, including creation of additional accounts with administrative privileges. This issue affects all versions of SmodBIP. SmodBIP is no longer maintained and the vulnerability will not be fixed.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-5498

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) in GitHub repository chiefonboarding/chiefonboarding prior to v2.0.47.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-44261

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Dinesh Karki Block Plugin Update plugin <= 3.3 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-44259

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Mediavine Mediavine Control Panel plugin <= 2.10.2 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-44257

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Hometory Mang Board WP plugin <= 1.7.6 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41876

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Hardik Kalathiya WP Gallery Metabox plugin <= 1.0.0 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41858

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Ashok Rane Order Delivery Date for WP e-Commerce plugin <= 1.2 versions.

    Published: 10 Oct 2023
    5.4
    Medium

    CVE-2023-41854

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Softaculous Ltd. WpCentral plugin <= 1.5.7 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41853

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in WP iCal Availability plugin <= 1.0.3 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41852

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailMunch – Grow your Email List plugin <= 3.1.2 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41851

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Dotsquares WP Custom Post Template <= 1.0 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41850

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Morris Bryant, Ruben Sargsyan Outbound Link Manager plugin <= 1.2 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41730

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in SendPress Newsletters plugin <= 1.22.3.31 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41697

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Nikunj Soni Easy WP Cleaner plugin <= 1.9 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41694

    Last Modified: 19 Feb 2025

    Cross-Site Request Forgery (CSRF) vulnerability in Realbig Team Realbig For WordPress plugin <= 1.0.3 versions.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41684

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability in Felix Welberg SIS Handball plugin <= 1.0.45 versions.

    Published: 10 Oct 2023
    6.4
    Medium

    CVE-2023-5467

    Last Modified: 8 Apr 2026

    The GEO my WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 4.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 10 Oct 2023
    6.4
    Medium

    CVE-2023-5468

    Last Modified: 8 Apr 2026

    The Slick Contact Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dcscf-link' shortcode in versions up to, and including, 1.3.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 10 Oct 2023
    6.5
    Medium

    CVE-2023-42477

    Last Modified: 21 Nov 2024

    SAP NetWeaver AS Java (GRMG Heartbeat application) - version 7.50, allows an attacker to send a crafted request from a vulnerable web application, causing limited impact on confidentiality and integrity of the application.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-42475

    Last Modified: 21 Nov 2024

    The Statutory Reporting application has a vulnerable file storage location, potentially enabling low privileged attacker to read server files with minimal impact on confidentiality.

    Published: 10 Oct 2023
    6.8
    Medium

    CVE-2023-42474

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Web Intelligence - version 420, has a URL with parameter that could be vulnerable to XSS attack. The attacker could send a malicious link to a user that would possibly allow an attacker to retrieve the sensitive information.

    Published: 10 Oct 2023
    5.4
    Medium

    CVE-2023-42473

    Last Modified: 27 Feb 2025

    S/4HANA Manage (Withholding Tax Items) - version 106, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges which has low impact on the confidentiality and integrity of the application.

    Published: 10 Oct 2023
    4.3
    Medium

    CVE-2023-41365

    Last Modified: 21 Nov 2024

    SAP Business One (B1i) - version 10.0, allows an authorized attacker to retrieve the details stack trace of the fault message to conduct the XXE injection, which will lead to information disclosure. After successful exploitation, an attacker can cause limited impact on the confidentiality and no impact to the integrity and availability.

    Published: 10 Oct 2023
    6.5
    Medium

    CVE-2023-40310

    Last Modified: 21 Nov 2024

    SAP PowerDesigner Client - version 16.7, does not sufficiently validate BPMN2 XML document imported from an untrusted source. As a result, URLs of external entities in BPMN2 file, although not used, would be accessed during import. A successful attack could impact availability of SAP PowerDesigner Client.

    Published: 10 Oct 2023
    6.3
    Medium

    CVE-2023-5471

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as critical, was found in codeprojects Farmacia 1.0. Affected is an unknown function of the file index.php. The manipulation of the argument usario/senha leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-241608.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-44487

    Last Modified: 11 Aug 2026

    The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

    Published: 10 Oct 2023
    6.5
    Medium

    CVE-2023-42669

    Last Modified: 20 Nov 2025

    A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnerability stems from an RPC function that can be blocked indefinitely. The issue arises because the "rpcecho" service operates with only one worker in the main RPC task, allowing calls to the "rpcecho" server to be blocked for a specified time, causing service disruptions. This disruption is triggered by a "sleep()" call in the "dcesrv_echo_TestSleep()" function under specific conditions. Authenticated users or attackers can exploit this vulnerability to make calls to the "rpcecho" server, requesting it to block for a specified duration, effectively disrupting most services and leading to a complete denial of service on the AD DC. The DoS affects all other services as "rpcecho" runs in the main RPC task.

    Published: 10 Oct 2023
    6.5
    Medium

    CVE-2023-4091

    Last Modified: 20 Nov 2025

    A vulnerability was discovered in Samba, where the flaw allows SMB clients to truncate files, even with read-only permissions when the Samba VFS module "acl_xattr" is configured with "acl_xattr:ignore system acls = yes". The SMB protocol allows opening files when the client requests read-only access but then implicitly truncates the opened file to 0 bytes if the client specifies a separate OVERWRITE create disposition request. The issue arises in configurations that bypass kernel file system permissions checks, relying solely on Samba's permissions.

    Published: 10 Oct 2023
    9.1
    Critical

    CVE-2023-3961

    Last Modified: 20 Nov 2025

    A path traversal vulnerability was identified in Samba when processing client pipe names connecting to Unix domain sockets within a private directory. Samba typically uses this mechanism to connect SMB clients to remote procedure call (RPC) services like SAMR LSA or SPOOLSS, which Samba initiates on demand. However, due to inadequate sanitization of incoming client pipe names, allowing a client to send a pipe name containing Unix directory traversal characters (../). This could result in SMB clients connecting as root to Unix domain sockets outside the private directory. If an attacker or client managed to send a pipe name resolving to an external service using an existing Unix domain socket, it could potentially lead to unauthorized access to the service and consequential adverse events, including compromise or service crashes.

    Published: 10 Oct 2023
    8.8
    High

    CVE-2023-45208

    Last Modified: 21 Nov 2024

    A command injection in the parsing_xml_stasurvey function inside libcgifunc.so of the D-Link DAP-X1860 repeater 1.00 through 1.01b05-01 allows attackers (within range of the repeater) to run shell commands as root during the setup process of the repeater, via a crafted SSID. Also, network names containing single quotes (in the range of the repeater) can result in a denial of service.

    Published: 10 Oct 2023
    8.8
    High

    CVE-2023-44959

    Last Modified: 21 Nov 2024

    An issue found in D-Link DSL-3782 v.1.03 and before allows remote authenticated users to execute arbitrary code as root via the Router IP Address fields of the network settings page.

    Published: 10 Oct 2023
    5.4
    Medium

    CVE-2023-44826

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in ZenTaoPMS v.18.6 allows a local attacker to obtain sensitive information via a crafted script.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-43622

    Last Modified: 13 Feb 2025

    An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resources in the server, similar to the well known "slow loris" attack pattern. This has been fixed in version 2.4.58, so that such connection are terminated properly after the configured connection timeout. This issue affects Apache HTTP Server: from 2.4.55 through 2.4.57. Users are recommended to upgrade to version 2.4.58, which fixes the issue.

    Published: 10 Oct 2023
    6.5
    Medium

    CVE-2023-42670

    Last Modified: 20 Nov 2025

    A flaw was found in Samba. It is susceptible to a vulnerability where multiple incompatible RPC listeners can be initiated, causing disruptions in the AD DC service. When Samba's RPC server experiences a high load or unresponsiveness, servers intended for non-AD DC purposes (for example, NT4-emulation "classic DCs") can erroneously start and compete for the same unix domain sockets. This issue leads to partial query responses from the AD DC, causing issues such as "The procedure number is out of range" when using tools like Active Directory Users. This flaw allows an attacker to disrupt AD DC services.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-42189

    Last Modified: 26 Nov 2024

    Insecure Permissions vulnerability in Connectivity Standards Alliance Matter Official SDK v.1.1.0.0 , Nanoleaf Light strip v.3.5.10, Govee LED Strip v.3.00.42, switchBot Hub2 v.1.0-0.8, Phillips hue hub v.1.59.1959097030, and yeelight smart lamp v.1.12.69 allows a remote attacker to cause a denial of service via a crafted script to the KeySetRemove function.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-36127

    Last Modified: 21 Nov 2024

    User enumeration is found in in PHPJabbers Appointment Scheduler 3.0. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2020-27213

    Last Modified: 21 Nov 2024

    An issue was discovered in Ethernut Nut/OS 5.1. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attacker may be able to determine the ISN of current and future TCP connections and either hijack existing ones or spoof future ones. While the ISN generator seems to adhere to RFC 793 (where a global 32-bit counter is incremented roughly every 4 microseconds), proper ISN generation should aim to follow at least the specifications outlined in RFC 6528.

    Published: 10 Oct 2023
    9.8
    Critical

    CVE-2020-27630

    Last Modified: 21 Nov 2024

    In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.

    Published: 10 Oct 2023
    9.1
    Critical

    CVE-2020-27636

    Last Modified: 21 Nov 2024

    In Microchip MPLAB Net 3.6.1, TCP ISNs are improperly random.

    Published: 10 Oct 2023
    7.5
    High

    CVE-2023-36435

    Last Modified: 14 Apr 2025

    Microsoft QUIC Denial of Service Vulnerability

    Published: 10 Oct 2023
    7.4
    High

    CVE-2020-18336

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability found in Typora v.0.9.65 allows a remote attacker to obtain sensitive information via the PDF file exporting function.

    Published: 10 Oct 2023