CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2023-41011

    Last Modified: 21 Nov 2024

    Command Execution vulnerability in China Mobile Communications China Mobile Intelligent Home Gateway v.HG6543C4 allows a remote attacker to execute arbitrary code via the shortcut_telnet.cg component.

    Published: 14 Sept 2023
    4.3
    Medium

    CVE-2021-28485

    Last Modified: 21 Nov 2024

    In Ericsson Mobile Switching Center Server (MSC-S) before IS 3.1 CP22, the SIS web application allows relative path traversal via a specific parameter in the https request after authentication, which allows access to files on the system that are not intended to be accessible via the web application.

    Published: 14 Sept 2023
    7.8
    High

    CVE-2022-47631

    Last Modified: 21 Nov 2024

    Razer Synapse through 3.7.1209.121307 allows privilege escalation due to an unsafe installation path and improper privilege management. Attackers can place DLLs into %PROGRAMDATA%\Razer\Synapse3\Service\bin if they do so before the service is installed and if they deny write access for the SYSTEM user. Although the service will not start if it detects malicious DLLs in this directory, attackers can exploit a race condition and replace a valid DLL (i.e., a copy of a legitimate Razer DLL) with a malicious DLL after the service has already checked the file. As a result, local Windows users can abuse the Razer driver installer to obtain administrative privileges on Windows.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-37755

    Last Modified: 21 Nov 2024

    i-doit pro 25 and below and I-doit open 25 and below are configured with insecure default administrator credentials, and there is no warning or prompt to ask users to change the default password and account name. Unauthenticated attackers can exploit this vulnerability to obtain Administrator privileges, resulting in them being able to perform arbitrary system operations or cause a Denial of Service (DoS).

    Published: 14 Sept 2023
    6.5
    Medium

    CVE-2023-37739

    Last Modified: 21 Nov 2024

    i-doit Pro v25 and below was discovered to be vulnerable to path traversal.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-37756

    Last Modified: 21 Nov 2024

    I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Administrator account creation. Attackers are able to easily guess users' passwords via a bruteforce attack.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-38891

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in Vtiger CRM v.7.5.0 allows a remote authenticated attacker to escalate privileges via the getQueryColumnsList function in ReportRun.php.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-38912

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in Super Store Finder PHP Script v.3.6 allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter.

    Published: 14 Sept 2023
    4.3
    Medium

    CVE-2023-39285

    Last Modified: 21 Nov 2024

    A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an unauthenticated attacker to perform a Cross Site Request Forgery (CSRF) attack due to insufficient request validation. A successful exploit could allow an attacker to provide a modified URL, potentially enabling them to modify system configuration settings.

    Published: 14 Sept 2023
    4.3
    Medium

    CVE-2023-39286

    Last Modified: 21 Nov 2024

    A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2304.102 could allow an unauthenticated attacker to perform a Cross Site Request Forgery (CSRF) attack due to insufficient request validation. A successful exploit could allow an attacker to provide a modified URL, potentially enabling them to modify system configuration settings.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-39638

    Last Modified: 21 Nov 2024

    D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc_system function at /htdocs/cgibin.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-39639

    Last Modified: 21 Nov 2024

    LeoTheme leoblog up to v3.1.2 was discovered to contain a SQL injection vulnerability via the component LeoBlogBlog::getListBlogs.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-39641

    Last Modified: 21 Nov 2024

    Active Design psaffiliate before v1.9.8 was discovered to contain a SQL injection vulnerability via the component PsaffiliateGetaffiliatesdetailsModuleFrontController::initContent().

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-39642

    Last Modified: 21 Nov 2024

    Carts Guru cartsguru up to v2.4.2 was discovered to contain a SQL injection vulnerability via the component CartsGuruCatalogModuleFrontController::display().

    Published: 14 Sept 2023
    6.1
    Medium

    CVE-2023-40779

    Last Modified: 21 Nov 2024

    An issue in IceWarp Mail Server Deep Castle 2 v.13.0.1.2 allows a remote attacker to execute arbitrary code via a crafted request to the URL.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-40868

    Last Modified: 21 Nov 2024

    Cross Site Request Forgery vulnerability in mooSocial MooSocial Software v.Demo allows a remote attacker to execute arbitrary code via the Delete Account and Deactivate functions.

    Published: 14 Sept 2023
    6.1
    Medium

    CVE-2023-40869

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in mooSocial mooSocial Software 3.1.6 and 3.1.7 allows a remote attacker to execute arbitrary code via a crafted script to the edit_menu, copuon, and group_categorias functions.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-40955

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in Didotech srl Engineering & Lifecycle Management (aka pdm) v.14.0, v.15.0 and v.16.0 fixed in pdm-14.0.1.0.0, pdm-15.0.1.0.0, and pdm-16.0.1.0.0 allows a remote authenticated attacker to execute arbitrary code via the select parameter in models/base_client.py component.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-40956

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in Cloudroits Website Job Search v.15.0 allows a remote authenticated attacker to execute arbitrary code via the name parameter in controllers/main.py component.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-40958

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in Didotech srl Engineering & Lifecycle Management (aka pdm) v.14.0, v.15.0 and v.16.0 fixed in pdm-14.0.1.0.0, pdm-15.0.1.0.0, and pdm-16.0.1.0.0 allows a remote authenticated attacker to execute arbitrary code via the query parameter in models/base_client.py component.

    Published: 14 Sept 2023
    5.5
    Medium

    CVE-2023-41010

    Last Modified: 21 Nov 2024

    Insecure Permissions vulnerability in Sichuan Tianyi Kanghe Communication Co., Ltd China Telecom Tianyi Home Gateway v.TEWA-700G allows a local attacker to obtain sensitive information via the default password parameter.

    Published: 14 Sept 2023
    5.4
    Medium

    CVE-2023-41159

    Last Modified: 21 Nov 2024

    A Stored Cross-Site Scripting (XSS) vulnerability while editing the autoreply file page in Usermin 2.000 allows remote attackers to inject arbitrary web script or HTML by editing the forward file manually.

    Published: 14 Sept 2023
    5.4
    Medium

    CVE-2023-41160

    Last Modified: 21 Nov 2024

    A Stored Cross-Site Scripting (XSS) vulnerability in the SSH configuration tab in Usermin 2.001 allows remote attackers to inject arbitrary web script or HTML via the key name field while adding an authorized key.

    Published: 14 Sept 2023
    6.1
    Medium

    CVE-2023-41588

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Time to SLA plugin v10.13.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the durationFormat parameter.

    Published: 14 Sept 2023
    5.4
    Medium

    CVE-2023-41592

    Last Modified: 21 Nov 2024

    Froala Editor v4.0.1 to v4.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-42180

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the /user/upload component of lenosp 1.0-1.2.0 allows attackers to execute html code via a crafted JPG file.

    Published: 14 Sept 2023
    5.4
    Medium

    CVE-2023-42362

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in Teller Web App v.4.4.0 allows a remote attacker to execute arbitrary commands and obtain sensitive information via uploading a crafted file.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-42405

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in FIT2CLOUD RackShift v1.7.1 allows attackers to execute arbitrary code via the `sort` parameter to taskService.list(), bareMetalService.list(), and switchService.list().

    Published: 14 Sept 2023
    6.5
    Medium

    CVE-2023-42178

    Last Modified: 3 Feb 2026

    Lenosp 1.0.0-1.2.0 is vulnerable to SQL Injection via the log query module.

    Published: 14 Sept 2023
    7.8
    High

    CVE-2023-36250

    Last Modified: 21 Nov 2024

    CSV Injection vulnerability in GNOME time tracker version 3.0.2, allows local attackers to execute arbitrary code via crafted .tsv file when creating a new record.

    Published: 14 Sept 2023
    5.4
    Medium

    CVE-2023-41156

    Last Modified: 21 Nov 2024

    A Stored Cross-Site Scripting (XSS) vulnerability in the filter and forward mail tab in Usermin 2.001 allows remote attackers to inject arbitrary web script or HTML via the save to new folder named field while creating a new filter.

    Published: 14 Sept 2023
    6.8
    Medium

    CVE-2023-23845

    Last Modified: 27 Feb 2025

    The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with NETWORK SERVICE privileges.

    Published: 13 Sept 2023
    6.8
    Medium

    CVE-2023-23840

    Last Modified: 27 Feb 2025

    The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to SolarWinds Web Console to execute arbitrary commands with NETWORK SERVICE privileges.

    Published: 13 Sept 2023
    6.5
    Medium

    CVE-2023-4568

    Last Modified: 21 Nov 2024

    PaperCut NG allows for unauthenticated XMLRPC commands to be run by default. Versions 22.0.12 and below are confirmed to be affected, but later versions may also be affected due to lack of a vendor supplied patch.

    Published: 13 Sept 2023
    10
    Critical

    CVE-2023-41892

    Last Modified: 13 Feb 2025

    Craft CMS is a platform for creating digital experiences. This is a high-impact, low-complexity attack vector. Users running Craft installations before 4.4.15 are encouraged to update to at least that version to mitigate the issue. This issue has been fixed in Craft CMS 4.4.15.

    Published: 13 Sept 2023
    5.4
    Medium

    CVE-2023-3588

    Last Modified: 21 Nov 2024

    A stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x allows an attacker to execute arbitrary script code.

    Published: 13 Sept 2023
    5.8
    Medium

    CVE-2023-20190

    Last Modified: 21 Nov 2024

    A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass the protection that is offered by a configured ACL on an affected device. This vulnerability is due to incorrect destination address range encoding in the compression module of an ACL that is applied to an interface of an affected device. An attacker could exploit this vulnerability by sending traffic through the affected device that should be denied by the configured ACL. A successful exploit could allow the attacker to bypass configured ACL protections on the affected device, allowing the attacker to access trusted networks that the device might be protecting. There are workarounds that address this vulnerability. This advisory is part of the September 2023 release of the Cisco IOS XR Software Security Advisory Bundled Publication. For a complete list of the advisories and links to them, see Cisco Event Response: September 2023 Semiannual Cisco IOS XR Software Security Advisory Bundled Publication .

    Published: 13 Sept 2023
    5.8
    Medium

    CVE-2023-20191

    Last Modified: 21 Nov 2024

    A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to incomplete support for this feature. An attacker could exploit this vulnerability by attempting to send traffic through an affected device. A successful exploit could allow the attacker to bypass an ACL on the affected device. There are workarounds that address this vulnerability. This advisory is part of the September 2023 release of the Cisco IOS XR Software Security Advisory Bundled Publication. For a complete list of the advisories and links to them, see Cisco Event Response: September 2023 Semiannual Cisco IOS XR Software Security Advisory Bundled Publication .

    Published: 13 Sept 2023
    4.3
    Medium

    CVE-2023-20233

    Last Modified: 21 Nov 2024

    A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incorrect processing of invalid continuity check messages (CCMs). An attacker could exploit this vulnerability by sending crafted CCMs to an affected device. A successful exploit could allow the attacker to cause the CFM service to crash when a user displays information about maintenance end points (MEPs) for peer MEPs on an affected device.

    Published: 13 Sept 2023
    6.7
    Medium

    CVE-2023-20236

    Last Modified: 16 Dec 2025

    A vulnerability in the iPXE boot function of Cisco IOS XR software could allow an authenticated, local attacker to install an unverified software image on an affected device. This vulnerability is due to insufficient image verification. An attacker could exploit this vulnerability by manipulating the boot parameters for image verification during the iPXE boot process on an affected device. A successful exploit could allow the attacker to boot an unverified software image on the affected device.

    Published: 13 Sept 2023
    5.7
    Medium

    CVE-2023-20135

    Last Modified: 16 Dec 2025

    A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system. This vulnerability is due to a time-of-check, time-of-use (TOCTOU) race condition when an install query regarding an ISO image is performed during an install operation that uses an ISO image. An attacker could exploit this vulnerability by modifying an ISO image and then carrying out install requests in parallel. A successful exploit could allow the attacker to execute arbitrary code on an affected device.

    Published: 13 Sept 2023
    7.5
    High

    CVE-2023-4785

    Last Modified: 12 Jan 2026

    Lack of error handling in the TCP server in Google's gRPC starting version 1.23 on posix-compatible platforms (ex. Linux) allows an attacker to cause a denial of service by initiating a significant number of connections with the server. Note that gRPC C++ Python, and Ruby are affected, but gRPC Java, and Go are NOT affected.

    Published: 13 Sept 2023
    5.5
    Medium

    CVE-2023-3280

    Last Modified: 21 Nov 2024

    A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to disable the agent.

    Published: 13 Sept 2023
    6.4
    Medium

    CVE-2023-4828

    Last Modified: 21 Nov 2024

    An improper check for an exceptional condition in the Insider Threat Management (ITM) Server could be used by an attacker to change the server's configuration of any already-registered agent so that the agent sends all future communications to an attacker-chosen URL. This could result in disclosure of sensitive data events from the agent about the personally identifiable information (PII) and intellectual property it monitors, and all such data could be altered or deleted before reaching the ITM Server. An attacker must first successfully obtain valid agent credentials and agent hostname. All versions prior to 7.14.3.69 are affected.

    Published: 13 Sept 2023
    4.8
    Medium

    CVE-2023-4803

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting vulnerability in the WriteWindowTitle endpoint of the Insider Threat Management (ITM) Server's web console could be used by an authenticated administrator to run arbitrary javascript within another web console administrator's browser. All versions prior to 7.14.3.69 are affected.

    Published: 13 Sept 2023
    4.8
    Medium

    CVE-2023-4802

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting vulnerability in the UpdateInstalledSoftware endpoint of the Insider Threat Management (ITM) Server's web console could be used by an authenticated administrator to run arbitrary javascript within another web console administrator's browser. All versions prior to 7.14.3.69 are affected.

    Published: 13 Sept 2023
    7.5
    High

    CVE-2023-4801

    Last Modified: 21 Nov 2024

    An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM server after the agent has registered. All versions prior to 7.14.3.69 are affected. Agents for Windows, Linux, and Cloud are unaffected.

    Published: 13 Sept 2023
    9.3
    Critical

    CVE-2023-39916

    Last Modified: 3 Oct 2025

    NLnet Labs’ Routinator 0.9.0 up to and including 0.12.1 as well as 0.14.0 up to and including 0.14.2 contains a possible path traversal vulnerability in the optional, off-by-default keep-rrdp-responses feature that allows users to store the content of responses received for RRDP requests. The location of these stored responses is constructed from the URL of the request. Due to insufficient sanitation of the URL, it is possible for an attacker to craft a URL that results in the response being stored outside of the directory specified for it.

    Published: 13 Sept 2023
    7.5
    High

    CVE-2023-39915

    Last Modified: 21 Nov 2024

    NLnet Labs' Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914.

    Published: 13 Sept 2023
    7.5
    High

    CVE-2023-39914

    Last Modified: 21 Nov 2024

    NLnet Labs' bcder library up to and including version 0.7.2 panics while decoding certain invalid input data rather than rejecting the data with an error. This can affect both the actual decoding stage as well as accessing content of types that utilized delayed decoding.

    Published: 13 Sept 2023