CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2023-31714

    Last Modified: 21 Nov 2024

    Chitor-CMS before v1.1.2 was discovered to contain multiple SQL injection vulnerabilities.

    Published: 30 Aug 2023
    5.4
    Medium

    CVE-2023-38970

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the Name of member parameter in the add new member function.

    Published: 30 Aug 2023
    7.8
    High

    CVE-2023-39135

    Last Modified: 21 Nov 2024

    An issue in Zip Swift v2.1.2 allows attackers to execute a path traversal attack via a crafted zip entry.

    Published: 30 Aug 2023
    5.5
    Medium

    CVE-2023-39136

    Last Modified: 21 Nov 2024

    An unhandled edge case in the component _sanitizedPath of ZipArchive v2.5.4 allows attackers to cause a Denial of Service (DoS) via a crafted zip file.

    Published: 30 Aug 2023
    7.8
    High

    CVE-2023-39137

    Last Modified: 21 Nov 2024

    An issue in Archive v3.3.7 allows attackers to spoof zip filenames which can lead to inconsistent filename parsing.

    Published: 30 Aug 2023
    6.1
    Medium

    CVE-2023-41538

    Last Modified: 21 Nov 2024

    phpjabbers PHP Forum Script 3.0 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40838

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_3A1D0' contains a command execution vulnerability.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40839

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADF3C' contains a command execution vulnerability. In the "formSetIptv" function, obtaining the "list" and "vlanId" fields, unfiltered passing these two fields as parameters to the "sub_ADF3C" function to execute commands.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40840

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "fromGetWirelessRepeat."

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40841

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "add_white_node,"

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40842

    Last Modified: 21 Nov 2024

    Tengda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "R7WebsSecurityHandler."

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40843

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via function "sub_73004."

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-40848

    Last Modified: 21 Nov 2024

    Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin is vulnerable to Buffer Overflow via the function "sub_7D858."

    Published: 30 Aug 2023
    6.1
    Medium

    CVE-2023-41163

    Last Modified: 21 Nov 2024

    A Reflected Cross-site scripting (XSS) vulnerability in the file manager tab in Usermin 2.000 allows remote attackers to inject arbitrary web script or HTML via the replace in results field while replacing the results under the tools drop down.

    Published: 30 Aug 2023
    7.5
    High

    CVE-2023-41539

    Last Modified: 21 Nov 2024

    phpjabbers Business Directory Script 3.2 is vulnerable to SQL Injection via the column parameter.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41552

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44 and Tenda AC9 V3.0 V15.03.06.42_multi were discovered to contain a stack overflow via parameter ssid at url /goform/fast_setting_wifi_set.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41555

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44 was discovered to contain a stack overflow via parameter security_5g at url /goform/WifiBasicSet.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41557

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44 and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter entrys and mitInterface at url /goform/addressNat.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41558

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44 was discovered to contain a stack overflow via parameter timeZone at url /goform/SetSysTimeCfg.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41561

    Last Modified: 21 Nov 2024

    Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter startIp and endIp at url /goform/SetPptpServerCfg.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41562

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter time at url /goform/PowerSaveSet.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41563

    Last Modified: 21 Nov 2024

    Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter mac at url /goform/GetParentControlInfo.

    Published: 30 Aug 2023
    —
    Unknown

    CVE-2023-41605

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 30 Aug 2023
    5.1
    Medium

    CVE-2023-39189

    Last Modified: 6 Nov 2025

    A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information disclosure.

    Published: 30 Aug 2023
    6.1
    Medium

    CVE-2023-41537

    Last Modified: 11 Nov 2025

    phpjabbers Business Directory Script 3.2 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41560

    Last Modified: 21 Nov 2024

    Tenda AC9 V3.0 V15.03.06.42_multi was discovered to contain a stack overflow via parameter firewallEn at url /goform/SetFirewallCfg.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41553

    Last Modified: 21 Nov 2024

    Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter list at url /goform/SetStaticRouteCfg.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41554

    Last Modified: 21 Nov 2024

    Tenda AC9 V3.0 V15.03.06.42_multi was discovered to contain a stack overflow via parameter wpapsk_crypto at url /goform/WifiExtraSet.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41556

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter list at url /goform/SetIpMacBind.

    Published: 30 Aug 2023
    9.8
    Critical

    CVE-2023-41559

    Last Modified: 21 Nov 2024

    Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow via parameter page at url /goform/NatStaticSetting.

    Published: 30 Aug 2023
    8.8
    High

    CVE-2023-4296

    Last Modified: 13 Feb 2025

    ​If an attacker tricks an admin user of PTC Codebeamer into clicking on a malicious link, it may allow the attacker to inject arbitrary code to be executed in the browser on the target device.

    Published: 29 Aug 2023
    7.1
    High

    CVE-2023-32241

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPDeveloper Essential Addons for Elementor Pro plugin <= 5.4.8 versions.

    Published: 29 Aug 2023
    8.8
    High

    CVE-2023-4572

    Last Modified: 13 Feb 2025

    Use after free in MediaStream in Google Chrome prior to 116.0.5845.140 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 29 Aug 2023
    4.5
    Medium

    CVE-2023-39268

    Last Modified: 21 Nov 2024

    A memory corruption vulnerability in ArubaOS-Switch could lead to unauthenticated remote code execution by receiving specially crafted packets. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.

    Published: 29 Aug 2023
    7.5
    High

    CVE-2023-4346

    Last Modified: 15 Jul 2026

    KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and users being unable to reset them to gain access to the device. The BCU key feature on the devices can be used to create a password for the device, but this password can often not be reset without entering the current password. If the device is configured to interface with a network, an attacker with access to that network could interface with the KNX installation, purge all devices without additional security options enabled, and set a BCU key, locking the device. Even if a device is not connected to a network, an attacker with physical access to the device could also exploit this vulnerability in the same way.

    Published: 29 Aug 2023
    6.6
    Medium

    CVE-2023-39267

    Last Modified: 21 Nov 2024

    An authenticated remote code execution vulnerability exists in the command line interface in ArubaOS-Switch. Successful exploitation results in a Denial-of-Service (DoS) condition in the switch.

    Published: 29 Aug 2023
    8.3
    High

    CVE-2023-39266

    Last Modified: 21 Nov 2024

    A vulnerability in the ArubaOS-Switch web management interface could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface provided certain configuration options are present. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.

    Published: 29 Aug 2023
    4.3
    Medium

    CVE-2023-3253

    Last Modified: 21 Nov 2024

    An improper authorization vulnerability exists where an authenticated, low privileged remote attacker could view a list of all the users available in the application.

    Published: 29 Aug 2023
    6.8
    Medium

    CVE-2023-3252

    Last Modified: 21 Nov 2024

    An arbitrary file write vulnerability exists where an authenticated, remote attacker with administrator privileges could alter logging variables to overwrite arbitrary files on the remote host with log data, which could lead to a denial of service condition.

    Published: 29 Aug 2023
    4.1
    Medium

    CVE-2023-3251

    Last Modified: 21 Nov 2024

    A pass-back vulnerability exists where an authenticated, remote attacker with administrator privileges could uncover stored SMTP credentials within the Nessus application.This issue affects Nessus: before 10.6.0.

    Published: 29 Aug 2023
    0
    Low

    CVE-2023-4610

    Last Modified: 7 Nov 2023

    The SRCU code was added in upstream kernel v6.4-rc1 and removed before v6.4. This bug only existed in development kernels. Please see https://lore.kernel.org/all/[email protected] and https://bugzilla.suse.com/show_bug.cgi?id=1215932 for more information.

    Published: 29 Aug 2023
    7.2
    High

    CVE-2023-20890

    Last Modified: 21 Nov 2024

    Aria Operations for Networks contains an arbitrary file write vulnerability. An authenticated malicious actor with administrative access to VMware Aria Operations for Networks can write files to arbitrary locations resulting in remote code execution.

    Published: 29 Aug 2023
    9.8
    Critical

    CVE-2023-34039

    Last Modified: 13 Feb 2025

    Aria Operations for Networks contains an Authentication Bypass vulnerability due to a lack of unique cryptographic key generation. A malicious actor with network access to Aria Operations for Networks could bypass SSH authentication to gain access to the Aria Operations for Networks CLI.

    Published: 29 Aug 2023
    5.3
    Medium

    CVE-2023-39522

    Last Modified: 21 Nov 2024

    goauthentik is an open-source Identity Provider. In affected versions using a recovery flow with an identification stage an attacker is able to determine if a username exists. Only setups configured with a recovery flow are impacted by this. Anyone with a user account on a system with the recovery flow described above is susceptible to having their username/email revealed as existing. An attacker can easily enumerate and check users' existence using the recovery flow, as a clear message is shown when a user doesn't exist. Depending on configuration this can either be done by username, email, or both. This issue has been addressed in versions 2023.5.6 and 2023.6.2. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 29 Aug 2023
    —
    Unknown

    CVE-2023-4609

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 29 Aug 2023
    4.3
    Medium

    CVE-2023-41037

    Last Modified: 21 Nov 2024

    OpenPGP.js is a JavaScript implementation of the OpenPGP protocol. In affected versions OpenPGP Cleartext Signed Messages are cryptographically signed messages where the signed text is readable without special tools. These messages typically contain a "Hash: ..." header declaring the hash algorithm used to compute the signature digest. OpenPGP.js up to v5.9.0 ignored any data preceding the "Hash: ..." texts when verifying the signature. As a result, malicious parties could add arbitrary text to a third-party Cleartext Signed Message, to lead the victim to believe that the arbitrary text was signed. A user or application is vulnerable to said attack vector if it verifies the CleartextMessage by only checking the returned `verified` property, discarding the associated `data` information, and instead _visually trusting_ the contents of the original message. Since `verificationResult.data` would always contain the actual signed data, users and apps that check this information are not vulnerable. Similarly, given a CleartextMessage object, retrieving the data using `getText()` or the `text` field returns only the contents that are considered when verifying the signature. Finally, re-armoring a CleartextMessage object (using `armor()` will also result in a "sanitised" version, with the extraneous text being removed. This issue has been addressed in version 5.10.1 (current stable version) which will reject messages when calling `openpgp.readCleartextMessage()` and in version 4.10.11 (legacy version) which will will reject messages when calling `openpgp.cleartext.readArmored()`. Users are advised to upgrade. Users unable to upgrade should check the contents of `verificationResult.data` to see what data was actually signed, rather than visually trusting the contents of the armored message.

    Published: 29 Aug 2023
    5.9
    Medium

    CVE-2023-3646

    Last Modified: 21 Nov 2024

    On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.

    Published: 29 Aug 2023
    5.3
    Medium

    CVE-2023-24548

    Last Modified: 21 Nov 2024

    On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets. The device will continue to be susceptible to the issue until remediation is in place.

    Published: 29 Aug 2023
    4.2
    Medium

    CVE-2021-32050

    Last Modified: 3 Nov 2025

    Some MongoDB Drivers may erroneously publish events containing authentication-related data to a command listener configured by an application. The published events may contain security-sensitive data when specific authentication-related commands are executed. Without due care, an application may inadvertently expose this sensitive information, e.g., by writing it to a log file. This issue only arises if an application enables the command listener feature (this is not enabled by default). This issue affects the MongoDB C Driver 1.0.0 prior to 1.17.7, MongoDB PHP Driver 1.0.0 prior to 1.9.2, MongoDB Swift Driver 1.0.0 prior to 1.1.1, MongoDB Node.js Driver 3.6 prior to 3.6.10, MongoDB Node.js Driver 4.0 prior to 4.17.0 and MongoDB Node.js Driver 5.0 prior to 5.8.0. This issue also affects users of the MongoDB C++ Driver dependent on the C driver 1.0.0 prior to 1.17.7 (C++ driver prior to 3.7.0).

    Published: 29 Aug 2023
    3.9
    Low

    CVE-2023-0654

    Last Modified: 21 Nov 2024

    Due to a misconfiguration, the WARP Mobile Client (< 6.29) for Android was susceptible to a tapjacking attack. In the event that an attacker built a malicious application and managed to install it on a victim's device, the attacker would be able to trick the user into believing that the app shown on the screen was the WARP client when in reality it was the attacker's app.

    Published: 29 Aug 2023