CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2023-43320

    Last Modified: 26 Nov 2024

    An issue in Proxmox Server Solutions GmbH Proxmox VE v.5.4 thru v.8.0, Proxmox Backup Server v.1.1 thru v.3.0, and Proxmox Mail Gateway v.7.1 thru v.8.0 allows a remote authenticated attacker to escalate privileges via bypassing the two-factor authentication component.

    Published: 27 Sept 2023
    5.4
    Medium

    CVE-2023-43828

    Last Modified: 21 Nov 2024

    A Cross-site scripting (XSS) vulnerability in /panel/languages/ of Subrion v4.2.1 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into 'Title' parameter.

    Published: 27 Sept 2023
    5.4
    Medium

    CVE-2023-43830

    Last Modified: 21 Nov 2024

    A Cross-site scripting (XSS) vulnerability in /panel/configuration/financial/ of Subrion v4.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into several fields: 'Minimum deposit', 'Maximum deposit' and/or 'Maximum balance'.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44013

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the list parameter in the fromSetIpMacBind function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44014

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain multiple stack overflows in the formSetMacFilterCfg function via the macFilterType and deviceList parameters.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44015

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the schedEndTime parameter in the setSchedWifi function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44016

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the deviceId parameter in the addWifiMacFilter function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44017

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44019

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the mac parameter in the GetParentControlInfo function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44020

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the security parameter in the formWifiBasicSet function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44021

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the formSetClientState function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44022

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44023

    Last Modified: 21 Nov 2024

    Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.

    Published: 27 Sept 2023
    7.2
    High

    CVE-2023-44047

    Last Modified: 24 Feb 2025

    Sourcecodester Toll Tax Management System v1 is vulnerable to SQL Injection.

    Published: 27 Sept 2023
    5.4
    Medium

    CVE-2023-44048

    Last Modified: 21 Nov 2024

    Sourcecodester Expense Tracker App v1 is vulnerable to Cross Site Scripting (XSS) via add category.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-44080

    Last Modified: 21 Nov 2024

    An issue in PGYER codefever v.2023.8.14-2ce4006 allows a remote attacker to execute arbitrary code via a crafted request to the branchList component.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-42117

    Last Modified: 3 Nov 2025

    Exim Improper Neutralization of Special Elements Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-17554.

    Published: 27 Sept 2023
    3.1
    Low

    CVE-2023-42119

    Last Modified: 3 Nov 2025

    Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the service account. . Was ZDI-CAN-17643.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-42116

    Last Modified: 4 Nov 2025

    Exim SMTP Challenge Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of NTLM challenge requests. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17515.

    Published: 27 Sept 2023
    4.6
    Medium

    CVE-2023-41878

    Last Modified: 21 Nov 2024

    MeterSphere is a one-stop open source continuous testing platform, covering functions such as test tracking, interface testing, UI testing and performance testing. The Selenium VNC config used in Metersphere is using a weak password by default, attackers can login to vnc and obtain high permissions. This issue has been addressed in version 2.10.7 LTS. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    7.7
    High

    CVE-2023-42462

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. The document upload process can be diverted to delete some files. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    6.5
    Medium

    CVE-2023-42461

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. The ITIL actors input field from the Ticket form can be used to perform a SQL injection. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    5.3
    Medium

    CVE-2023-41888

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. The lack of path filtering on the GLPI URL may allow an attacker to transmit a malicious URL of login page that can be used to attempt a phishing attack on user credentials. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    8.1
    High

    CVE-2023-41326

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A logged user from any profile can hijack the Kanban feature to alter any user field, and end-up with stealing its account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    8.1
    High

    CVE-2023-41324

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. An API user that have read access on users resource can steal accounts of other users. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    5.3
    Medium

    CVE-2023-41323

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. An unauthenticated user can enumerate users logins. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    4.9
    Medium

    CVE-2023-41322

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. A user with write access to another user can make requests to change the latter's password and then take control of their account. Users are advised to upgrade to version 10.0.10. There are no known work around for this vulnerability.

    Published: 26 Sept 2023
    6.8
    Medium

    CVE-2023-23958

    Last Modified: 21 Nov 2024

    Symantec Protection Engine, prior to 9.1.0, may be susceptible to a Hash Leak vulnerability.

    Published: 26 Sept 2023
    4.3
    Medium

    CVE-2023-2358

    Last Modified: 21 Nov 2024

    Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.5.0.0 and 9.3.0.4, including 8.3.x.x, saves passwords of the Hadoop Copy Files step in plaintext. 

    Published: 26 Sept 2023
    9.9
    Critical

    CVE-2023-5183

    Last Modified: 21 Nov 2024

    Unsafe deserialization of untrusted JSON allows execution of arbitrary code on affected releases of the Illumio PCE. Authentication to the API is required to exploit this vulnerability. The flaw exists within the network_traffic API endpoint. An attacker can leverage this vulnerability to execute code in the context of the PCE’s operating system user.  

    Published: 26 Sept 2023
    4.9
    Medium

    CVE-2023-41321

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. An API user can enumerate sensitive fields values on resources on which he has read access. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    8.1
    High

    CVE-2023-41320

    Last Modified: 21 Nov 2024

    GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. UI layout preferences management can be hijacked to lead to SQL injection. This injection can be use to takeover an administrator account. Users are advised to upgrade to version 10.0.10. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    5.9
    Medium

    CVE-2023-43645

    Last Modified: 21 Nov 2024

    OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. OpenFGA is vulnerable to a denial of service attack when certain Check calls are executed against authorization models that contain circular relationship definitions. When the call is made, it's possible for the server to exhaust resources and die. Users are advised to upgrade to v1.3.2 and update any offending models. There are no known workarounds for this vulnerability. Note that for models which contained cycles or a relation definition that has the relation itself in its evaluation path, checks and queries that require evaluation will no longer be evaluated on v1.3.2+ and will return errors instead. Users who do not have cyclic models are unaffected.

    Published: 26 Sept 2023
    3.7
    Low

    CVE-2023-41335

    Last Modified: 13 Feb 2025

    Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. When users update their passwords, the new credentials may be briefly held in the server database. While this doesn't grant the server any added capabilities—it already learns the users' passwords as part of the authentication process—it does disrupt the expectation that passwords won't be stored in the database. As a result, these passwords could inadvertently be captured in database backups for a longer duration. These temporarily stored passwords are automatically erased after a 48-hour window. This issue has been addressed in version 1.93.0. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 26 Sept 2023
    3.1
    Low

    CVE-2023-42453

    Last Modified: 18 Jun 2025

    Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. Users were able to forge read receipts for any event (if they knew the room ID and event ID). Note that the users were not able to view the events, but simply mark it as read. This could be confusing as clients will show the event as read by the user, even if they are not in the room. This issue has been patched in version 1.93.0. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 26 Sept 2023
    8.9
    High

    CVE-2023-42819

    Last Modified: 21 Nov 2024

    JumpServer is an open source bastion host. Logged-in users can access and modify the contents of any file on the system. A user can use the 'Job-Template' menu and create a playbook named 'test'. Get the playbook id from the detail page, like 'e0adabef-c38f-492d-bd92-832bacc3df5f'. An attacker can exploit the directory traversal flaw using the provided URL to access and retrieve the contents of the file. `https://jumpserver-ip/api/v1/ops/playbook/e0adabef-c38f-492d-bd92-832bacc3df5f/file/?key=../../../../../../../etc/passwd` a similar method to modify the file content is also present. This issue has been addressed in version 3.6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 26 Sept 2023
    7
    High

    CVE-2023-42820

    Last Modified: 21 Nov 2024

    JumpServer is an open source bastion host. This vulnerability is due to exposing the random number seed to the API, potentially allowing the randomly generated verification codes to be replayed, which could lead to password resets. If MFA is enabled users are not affect. Users not using local authentication are also not affected. Users are advised to upgrade to either version 2.28.19 or to 3.6.5. There are no known workarounds or this issue.

    Published: 26 Sept 2023
    3.5
    Low

    CVE-2023-41332

    Last Modified: 21 Nov 2024

    Cilium is a networking, observability, and security solution with an eBPF-based dataplane. In Cilium clusters where Cilium's Layer 7 proxy has been disabled, creating workloads with `policy.cilium.io/proxy-visibility` annotations (in Cilium >= v1.13) or `io.cilium.proxy-visibility` annotations (in Cilium <= v1.12) causes the Cilium agent to segfault on the node to which the workload is assigned. Existing traffic on the affected node will continue to flow, but the Cilium agent on the node will not able to process changes to workloads running on the node. This will also prevent workloads from being able to start on the affected node. The denial of service will be limited to the node on which the workload is scheduled, however an attacker may be able to schedule workloads on the node of their choosing, which could lead to targeted attacks. This issue has been resolved in Cilium versions 1.14.2, 1.13.7, and 1.12.14. Users unable to upgrade can avoid this denial of service attack by enabling the Layer 7 proxy.

    Published: 26 Sept 2023
    6.9
    Medium

    CVE-2023-41333

    Last Modified: 21 Nov 2024

    Cilium is a networking, observability, and security solution with an eBPF-based dataplane. An attacker with the ability to create or modify CiliumNetworkPolicy objects in a particular namespace is able to affect traffic on an entire Cilium cluster, potentially bypassing policy enforcement in other namespaces. By using a crafted `endpointSelector` that uses the `DoesNotExist` operator on the `reserved:init` label, the attacker can create policies that bypass namespace restrictions and affect the entire Cilium cluster. This includes potentially allowing or denying all traffic. This attack requires API server access, as described in the Kubernetes API Server Attacker section of the Cilium Threat Model. This issue has been resolved in Cilium versions 1.14.2, 1.13.7, and 1.12.14. As a workaround an admission webhook can be used to prevent the use of `endpointSelectors` that use the `DoesNotExist` operator on the `reserved:init` label in CiliumNetworkPolicies.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40402

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. An app may be able to access sensitive user data.

    Published: 26 Sept 2023
    10
    Critical

    CVE-2023-40455

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. A sandboxed process may be able to circumvent sandbox restrictions.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-40443

    Last Modified: 13 Feb 2025

    The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to gain root privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-32361

    Last Modified: 4 Nov 2025

    The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41073

    Last Modified: 4 Nov 2025

    An authorization issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access protected user data.

    Published: 26 Sept 2023
    7.8
    High

    CVE-2023-32377

    Last Modified: 4 Nov 2025

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40418

    Last Modified: 4 Nov 2025

    An authentication issue was addressed with improved state management. This issue is fixed in watchOS 10. An Apple Watch Ultra may not lock when using the Depth app.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-41065

    Last Modified: 4 Nov 2025

    A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to read sensitive location information.

    Published: 26 Sept 2023
    3.3
    Low

    CVE-2023-40434

    Last Modified: 4 Nov 2025

    A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access a user's Photos Library.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-40422

    Last Modified: 4 Nov 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to cause a denial-of-service.

    Published: 26 Sept 2023
    5.5
    Medium

    CVE-2023-41232

    Last Modified: 4 Nov 2025

    An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.7, iOS 17 and iPadOS 17, macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. An app may be able to disclose kernel memory.

    Published: 26 Sept 2023