9.8
    Critical

    CVE-2023-49543

    Last Modified: 18 Apr 2025

    Incorrect access control in Book Store Management System v1 allows attackers to access unauthorized pages and execute administrative functions without authenticating.

    Published:1 Mar 2024
    6.1
    Medium

    CVE-2023-49540

    Last Modified: 14 Apr 2025

    Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/history. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the history parameter.

    Published:1 Mar 2024
    6.1
    Medium

    CVE-2023-49539

    Last Modified: 14 Apr 2025

    Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/category. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the category parameter.

    Published:1 Mar 2024
    Unknown

    CVE-2023-49496

    https://github.com/HuangYanQwQ/CVE-2023-49496_PoC

    8.8
    High

    CVE-2023-49471

    Last Modified: 3 Jun 2025

    Blind Server-Side Request Forgery (SSRF) vulnerability in karlomikus Bar Assistant before version 3.2.0 does not validate a parameter before making a request through Image::make(), which could allow authenticated remote attackers to execute arbitrary code.

    Published:10 Jan 2024
    8.8
    High

    CVE-2023-49440

    Last Modified: 15 Apr 2026

    AhnLab EPP 1.0.15 is vulnerable to SQL Injection via the "preview parameter."

    Published:27 Oct 2025
    6.1
    Medium

    CVE-2023-49438

    Last Modified: 4 Nov 2025

    An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows attackers to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes.

    Published:26 Dec 2023
    8.8
    High

    CVE-2023-49367

    Last Modified: 15 Apr 2026

    An issue in user interface in Kyocera Command Center RX EXOSYS M5521cdn allows remote to obtain sensitive information via inspecting sent packages by user.

    Published:18 Sept 2025
    6.5
    Medium

    CVE-2023-49339

    Last Modified: 7 May 2025

    Ellucian Banner 9.17 allows Insecure Direct Object Reference (IDOR) via a modified bannerId to the /StudentSelfService/ssb/studentCard/retrieveData endpoint.

    Published:13 Feb 2024
    7.8
    High

    CVE-2023-49314

    Last Modified: 26 Nov 2024

    Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.

    Published:28 Nov 2023
    9.8
    Critical

    CVE-2023-49313

    Last Modified: 21 Nov 2024

    A dylib injection vulnerability in XMachOViewer 0.04 allows attackers to compromise integrity. By exploiting this, unauthorized code can be injected into the product's processes, potentially leading to remote control and unauthorized access to sensitive user data.

    Published:28 Nov 2023
    9.8
    Critical

    CVE-2023-49109

    Last Modified: 18 Mar 2025

    Exposure of Remote Code Execution in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1. We recommend users to upgrade Apache DolphinScheduler to version 3.2.1, which fixes the issue.

    Published:20 Feb 2024
    9.8
    Critical

    CVE-2023-49105

    Last Modified: 27 Aug 2026

    An issue was discovered in ownCloud owncloud/core before 10.13.1. An attacker can access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured. This occurs because pre-signed URLs can be accepted even when no signing-key is configured for the owner of the files. The earliest affected version is 10.6.0.

    Published:21 Nov 2023
    10
    Critical

    CVE-2023-49103

    Last Modified: 31 Oct 2025

    An issue was discovered in ownCloud owncloud/graphapi 0.2.x before 0.2.1 and 0.3.x before 0.3.1. The graphapi app relies on a third-party GetPhpInfo.php library that provides a URL. When this URL is accessed, it reveals the configuration details of the PHP environment (phpinfo). This information includes all the environment variables of the webserver. In containerized deployments, these environment variables may include sensitive data such as the ownCloud admin password, mail server credentials, and license key. Simply disabling the graphapi app does not eliminate the vulnerability. Additionally, phpinfo exposes various other potentially sensitive configuration details that could be exploited by an attacker to gather information about the system. Therefore, even if ownCloud is not running in a containerized environment, this vulnerability should still be a cause for concern. Note that Docker containers from before February 2023 are not vulnerable to the credential disclosure.

    Published:21 Nov 2023
    9.8
    Critical

    CVE-2023-49070

    Last Modified: 13 Feb 2025

    Pre-auth RCE in Apache Ofbiz 18.12.09. It's due to XML-RPC no longer maintained still present. This issue affects Apache OFBiz: before 18.12.10.  Users are recommended to upgrade to version 18.12.10

    Published:5 Dec 2023
    8.8
    High

    CVE-2023-49052

    Last Modified: 21 Nov 2024

    File Upload vulnerability in Microweber v.2.0.4 allows a remote attacker to execute arbitrary code via a crafted script to the file upload function in the created forms component.

    Published:30 Nov 2023
    5.1
    Medium

    CVE-2023-49031

    Last Modified: 11 Jul 2025

    Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a remote attacker to read arbitrary files and obtain sensitive information via a crafted payload to the filename parameter to the OpenLogFile endpoint.

    Published:3 Mar 2025
    5.3
    Medium

    CVE-2023-49003

    Last Modified: 21 Nov 2024

    An issue in simplemobiletools Simple Dialer 5.18.1 allows an attacker to bypass intended access restrictions via interaction with com.simplemobiletools.dialer.activities.DialerActivity.

    Published:27 Dec 2023
    7.5
    High

    CVE-2023-49002

    Last Modified: 21 Nov 2024

    An issue in Xenom Technologies (sinous) Phone Dialer-voice Call Dialer v.1.2.5 allows an attacker to bypass intended access restrictions via interaction with com.funprime.calldialer.ui.activities.OutgoingActivity.

    Published:27 Dec 2023
    Unknown

    CVE-2023-48983

    https://github.com/tristao-io/CVE-2023-48983

    Unknown

    CVE-2023-48982

    https://github.com/tristao-io/CVE-2023-48982

    Unknown

    CVE-2023-48981

    https://github.com/tristao-io/CVE-2023-48981

    9.6
    Critical

    CVE-2023-48974

    Last Modified: 2 Apr 2024

    Cross Site Scripting vulnerability in Axigen WebMail prior to 10.3.3.61 allows a remote attacker to escalate privileges via a crafted script to the serverName_input parameter.

    Source:Vincent McRae_ Mesut Cetin
    Published:8 Feb 2024
    6.1
    Medium

    CVE-2023-48858

    Last Modified: 2 Jun 2025

    A Cross-site scripting (XSS) vulnerability in login page php code in Armex ABO.CMS 5.9 allows remote attackers to inject arbitrary web script or HTML via the login.php? URL part.

    Published:17 Jan 2024
    9.8
    Critical

    CVE-2023-48849

    Last Modified: 21 Nov 2024

    Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitrary code due to incorrect filtering.

    Published:6 Dec 2023
    9.8
    Critical

    CVE-2023-48842

    Last Modified: 3 Jun 2025

    D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at hedwig.cgi.

    Published:1 Dec 2023
    5.9
    Medium

    CVE-2023-48795

    Last Modified: 12 May 2026

    The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack. This occurs because the SSH Binary Packet Protocol (BPP), implemented by these extensions, mishandles the handshake phase and mishandles use of sequence numbers. For example, there is an effective attack against SSH's use of ChaCha20-Poly1305 (and CBC with Encrypt-then-MAC). The bypass occurs in [email protected] and (if CBC is used) the [email protected] MAC algorithms. This also affects Maverick Synergy Java SSH API before 3.1.0-SNAPSHOT, Dropbear through 2022.83, Ssh before 5.1.1 in Erlang/OTP, PuTTY before 0.80, AsyncSSH before 2.14.2, golang.org/x/crypto before 0.17.0, libssh before 0.10.6, libssh2 through 1.11.0, Thorn Tech SFTP Gateway before 3.4.6, Tera Term before 5.1, Paramiko before 3.4.0, jsch before 0.2.15, SFTPGo before 2.5.6, Netgate pfSense Plus through 23.09.1, Netgate pfSense CE through 2.7.2, HPN-SSH through 18.2.0, ProFTPD before 1.3.8b (and before 1.3.9rc2), ORYX CycloneSSH before 2.3.4, NetSarang XShell 7 before Build 0144, CrushFTP before 10.6.0, ConnectBot SSH library before 2.2.22, Apache MINA sshd through 2.11.0, sshj through 0.37.0, TinySSH through 20230101, trilead-ssh2 6401, LANCOM LCOS and LANconfig, FileZilla before 3.66.4, Nova before 11.8, PKIX-SSH before 14.4, SecureCRT before 9.4.3, Transmit5 before 5.10.4, Win32-OpenSSH before 9.5.0.0p1-Beta, WinSCP before 6.2.2, Bitvise SSH Server before 9.32, Bitvise SSH Client before 9.33, KiTTY through 0.76.1.13, the net-ssh gem 7.2.0 for Ruby, the mscdex ssh2 module before 1.15.0 for Node.js, the thrussh library before 0.35.1 for Rust, and the Russh crate before 0.40.2 for Rust.

    Published:18 Dec 2023
    9.3
    Critical

    CVE-2023-48788

    Last Modified: 24 Oct 2025

    A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.

    Published:12 Mar 2024
    9.9
    Critical

    CVE-2023-48777

    Last Modified: 28 Apr 2026

    Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder: from 3.3.0 through 3.18.1.

    Published:26 Mar 2024
    9.7
    Critical

    CVE-2023-48292

    Last Modified: 29 Mar 2025

    The XWiki Admin Tools Application provides tools to help the administration of XWiki. Starting in version 4.4 and prior to version 4.5.1, a cross site request forgery vulnerability in the admin tool for executing shell commands on the server allows an attacker to execute arbitrary shell commands by tricking an admin into loading the URL with the shell command. A very simple possibility for an attack are comments. When the attacker can leave a comment on any page in the wiki it is sufficient to include an image with an URL like `/xwiki/bin/view/Admin/RunShellCommand?command=touch%20/tmp/attacked` in the comment. When an admin views the comment, the file `/tmp/attacked` will be created on the server. The output of the command is also vulnerable to XWiki syntax injection which offers a simple way to execute Groovy in the context of the XWiki installation and thus an even easier way to compromise the integrity and confidentiality of the whole XWiki installation. This has been patched by adding a form token check in version 4.5.1 of the admin tools. Some workarounds are available. The patch can be applied manually to the affected wiki pages. Alternatively, the document `Admin.RunShellCommand` can also be deleted if the possibility to run shell commands isn't needed.

    Source:Mehran Seifalinia
    Published:20 Nov 2023
    5.9
    Medium

    CVE-2023-48223

    Last Modified: 21 Nov 2024

    fast-jwt provides fast JSON Web Token (JWT) implementation. Prior to version 3.3.2, the fast-jwt library does not properly prevent JWT algorithm confusion for all public key types. The 'publicKeyPemMatcher' in 'fast-jwt/src/crypto.js' does not properly match all common PEM formats for public keys. To exploit this vulnerability, an attacker needs to craft a malicious JWT token containing the HS256 algorithm, signed with the public RSA key of the victim application. This attack will only work if the victim application utilizes a public key containing the `BEGIN RSA PUBLIC KEY` header. Applications using the RS256 algorithm, a public key with a `BEGIN RSA PUBLIC KEY` header, and calling the verify function without explicitly providing an algorithm, are vulnerable to this algorithm confusion attack which allows attackers to sign arbitrary payloads which will be accepted by the verifier. Version 3.3.2 contains a patch for this issue. As a workaround, change line 29 of `blob/master/src/crypto.js` to include a regular expression.

    Published:20 Nov 2023
    6.3
    Medium

    CVE-2023-48194

    Last Modified: 8 Dec 2025

    Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After executing set_client_qos, control over the gp register can be obtained.

    Published:9 Jul 2024
    8.8
    High

    CVE-2023-48123

    Last Modified: 21 Nov 2024

    An issue in Netgate pfSense Plus v.23.05.1 and before and pfSense CE v.2.7.0 allows a remote attacker to execute arbitrary code via a crafted request to the packet_capture.php file.

    Published:6 Dec 2023
    6.1
    Medium

    CVE-2023-48104

    Last Modified: 20 Jun 2025

    Alinto SOGo before 5.9.1 is vulnerable to HTML Injection.

    Published:16 Jan 2024
    9.8
    Critical

    CVE-2023-48084

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.11.3 was discovered to contain a SQL injection vulnerability via the bulk modification tool.

    Published:14 Dec 2023
    6.1
    Medium

    CVE-2023-48034

    Last Modified: 21 Nov 2024

    An issue discovered in Acer Wireless Keyboard SK-9662 allows attacker in physical proximity to both decrypt wireless keystrokes and inject arbitrary keystrokes via use of weak encryption.

    Published:27 Nov 2023
    9.8
    Critical

    CVE-2023-48022

    Last Modified: 17 Dec 2025

    Anyscale Ray 2.6.3 and 2.8.0 allows a remote attacker to execute arbitrary code via the job submission API. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its documentation, is not intended for use outside of a strictly controlled network environment. (Also, within that environment, customers at version 2.52.0 and later can choose to use token authentication.)

    Published:28 Nov 2023
    7.8
    High

    CVE-2023-47889

    Last Modified: 20 Jun 2025

    The Android application BINHDRM26 com.bdrm.superreboot 1.0.3, exposes several critical actions through its exported broadcast receivers. These exposed actions can allow any app on the device to send unauthorized broadcasts, leading to unintended consequences. The vulnerability is particularly concerning because these actions include powering off, system reboot & entering recovery mode.

    Published:6 Feb 2024
    9.8
    Critical

    CVE-2023-47883

    Last Modified: 21 Nov 2024

    The com.altamirano.fabricio.tvbrowser TV browser application through 4.5.1 for Android is vulnerable to JavaScript code execution via an explicit intent due to an exposed MainActivity.

    Published:27 Dec 2023
    7.1
    High

    CVE-2023-47882

    Last Modified: 21 Nov 2024

    The Kami Vision YI IoT com.yunyi.smartcamera application through 4.1.9_20231127 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.

    Published:27 Dec 2023
    9.9
    Critical

    CVE-2023-47840

    Last Modified: 28 Apr 2026

    Improper Control of Generation of Code ('Code Injection') vulnerability in Qode Interactive Qode Essential Addons.This issue affects Qode Essential Addons: from n/a through 1.5.2.

    Published:29 Dec 2023
    5.3
    Medium

    CVE-2023-47668

    Last Modified: 21 Nov 2024

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StellarWP Membership Plugin – Restrict Content plugin <= 3.2.7 versions.

    Published:23 Nov 2023
    8
    High

    CVE-2023-47564

    Last Modified: 21 Nov 2024

    An incorrect permission assignment for critical resource vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow authenticated users to read or modify the resource via a network. We have already fixed the vulnerability in the following versions: Qsync Central 4.4.0.15 ( 2024/01/04 ) and later Qsync Central 4.3.0.11 ( 2024/01/11 ) and later

    Published:2 Feb 2024
    5.3
    Medium

    CVE-2023-47529

    Last Modified: 28 Apr 2026

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ThemeIsle Cloud Templates & Patterns collection.This issue affects Cloud Templates & Patterns collection: from n/a through 1.2.2.

    Published:23 Nov 2023
    6.5
    Medium

    CVE-2023-47504

    Last Modified: 28 Apr 2026

    Improper Authentication vulnerability in Elementor Elementor Website Builder allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Elementor Website Builder: from n/a through 3.16.4.

    Published:24 Apr 2024
    8.8
    High

    CVE-2023-47464

    Last Modified: 21 Nov 2024

    Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbitrary code via the upload API function.

    Published:30 Nov 2023
    8.8
    High

    CVE-2023-47460

    Last Modified: 3 Jun 2025

    SQL injection vulnerability in Knovos Discovery v.22.67.0 allows a remote attacker to execute arbitrary code via the /DiscoveryProcess/Service/Admin.svc/getGridColumnStructure component.

    Published:16 Jan 2024
    6.5
    Medium

    CVE-2023-47459

    Last Modified: 17 Jun 2025

    An issue in Knovos Discovery v.22.67.0 allows a remote attacker to obtain sensitive information via the /DiscoveryReview/Service/CaseManagement.svc/GetProductSiteName component.

    Published:16 Jan 2024
    5.4
    Medium

    CVE-2023-47437

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Pachno 1.0.6 allowing an authenticated attacker to execute a cross-site scripting (XSS) attack. The vulnerability exists due to inadequate input validation in the Project Description and comments, which enables an attacker to inject malicious java script.

    Published:27 Nov 2023
    Unknown

    CVE-2023-47400

    https://github.com/LucasVanHaaren/CVE-2023-47400