CVE-2023-23000 to CVE-2023-23999
72 CVEs with public proof-of-concept exploits.
- CVE-2023-230091 PoCLibreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an…
- CVE-2023-230632 PoCsCellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi.
- CVE-2023-231261 PoCConnectwise Automate 2022.11 is vulnerable to Clickjacking. The login screen can be iframed and used to manipulate users to perform…
- CVE-2023-231271 PoCIn Connectwise Control 22.8.10013.8329, the login page does not implement HSTS headers therefore not enforcing HTTPS. NOTE: the vendor's…
- CVE-2023-231281 PoCConnectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendor's position is that two endpoints…
- CVE-2023-231301 PoCConnectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done via HTTP (cleartext) with SSL…
- CVE-2023-231311 PoCSelfwealth iOS mobile App 3.3.1 is vulnerable to Insecure App Transport Security (ATS) Settings.
- CVE-2023-231321 PoCSelfwealth iOS mobile App 3.3.1 is vulnerable to Sensitive key disclosure. The application reveals hardcoded API keys.
- CVE-2023-231561 PoCArt Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the pid parameter in the…
- CVE-2023-231612 PoCsA reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary…
- CVE-2023-231621 PoCArt Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at product.php.
- CVE-2023-231631 PoCArt Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter.
- CVE-2023-231691 PoCSynapsoft pdfocus 1.17 is vulnerable to local file inclusion and server-side request forgery Directory Traversal.
- CVE-2023-231921 PoCIS Decisions UserLock MFA 11.01 is vulnerable to authentication bypass using scheduled task.
- CVE-2023-232771 PoCSnippet-box 1.0.0 is vulnerable to Cross Site Scripting (XSS). Remote attackers can render arbitrary web script or HTML from the "Snippet…
- CVE-2023-232792 PoCsCanteen Management System 1.0 is vulnerable to SQL Injection via /php_action/getOrderReport.php.
- CVE-2023-232862 PoCsCross Site Scripting (XSS) vulnerability in Provide server 14.4 allows attackers to execute arbitrary code through the server-log via…
- CVE-2023-232941 PoCKorenix JetWave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection. An attacker can modify the file_name…
- CVE-2023-232951 PoCKorenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysCmd. An attacker an…
- CVE-2023-232961 PoCKorenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
- CVE-2023-233001 PoCThe `Toybox.Cryptography.Cipher.initialize` API method in CIQ API version 3.0.0 through 4.1.7 does not validate its parameters, which can…
- CVE-2023-233051 PoCThe GarminOS TVM component in CIQ API version 1.0.0 through 4.1.7 is vulnerable to various buffer overflows when loading binary resources.…
- CVE-2023-233151 PoCThe PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method…
- CVE-2023-233261 PoCA Stored Cross-Site Scripting (XSS) vulnerability exists in AvantFAX 3.3.7. An authenticated low privilege user can inject arbitrary…
- CVE-2023-233271 PoCAn Information Disclosure vulnerability exists in AvantFAX 3.3.7. Backups of the AvantFAX sent/received faxes, and database backups are…
- CVE-2023-233281 PoCA File Upload vulnerability exists in AvantFAX 3.3.7. An authenticated user can bypass PHP file type validation in FileUpload.php by…
- CVE-2023-233311 PoCAmano Xoffice parking solutions 7.1.3879 is vulnerable to SQL Injection.
- CVE-2023-233338 PoCsThere is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal…
- CVE-2023-233881 PoCWindows Bluetooth Driver Elevation of Privilege Vulnerability
- CVE-2023-233961 PoCMicrosoft Excel Denial of Service Vulnerability
- CVE-2023-2339734 PoCsKEVMicrosoft Outlook Elevation of Privilege Vulnerability
- CVE-2023-233981 PoCMicrosoft Excel Spoofing Vulnerability
- CVE-2023-233991 PoCMicrosoft Excel Remote Code Execution Vulnerability
- CVE-2023-234081 PoCAzure Apache Ambari Spoofing Vulnerability
- CVE-2023-234101 PoCWindows HTTP.sys Elevation of Privilege Vulnerability
- CVE-2023-234561 PoCUpx: heap-buffer-overflow in packtmt::pack()
- CVE-2023-234571 PoCUpx: segv on packlinuxelf64::invert_pt_dynamic() in p_lx_elf.cpp
- CVE-2023-234885 PoCsThe Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code'…
- CVE-2023-234892 PoCsThe Easy Digital Downloads WordPress Plugin, versions 3.1.0.2 & 3.1.0.3, is affected by an unauthenticated SQL injection vulnerability in…
- CVE-2023-234901 PoCThe Survey Maker WordPress Plugin, version < 3.1.2, is affected by an authenticated SQL injection vulnerability in the 'surveys_ids'…
- CVE-2023-234912 PoCsThe Quick Event Manager WordPress Plugin, version < 9.7.5, is affected by a reflected cross-site scripting vulnerability in the 'category'…
- CVE-2023-234923 PoCsThe Login with Phone Number WordPress Plugin, version < 1.4.2, is affected by an authenticated SQL injection vulnerability in the 'ID'…
- CVE-2023-235042 PoCsThe issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, iOS…
- CVE-2023-235461 PoCA misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-crafted…
- CVE-2023-235471 PoCA directory traversal vulnerability exists in the luci2-io file-export mib functionality of Milesight UR32L v32.3.0.5. A specially crafted…
- CVE-2023-235501 PoCAn OS command injection vulnerability exists in the ys_thirdparty user_delete functionality of Milesight UR32L v32.3.0.5. A specially…
- CVE-2023-235631 PoCAn issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to obtain sensitive database content via SQL…
- CVE-2023-235641 PoCAn issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to execute commands.
- CVE-2023-235651 PoCAn issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to retrieve PHP files from the server via Local…
- CVE-2023-235671 PoCA heap-based buffer overflow vulnerability exists in the CreateDIBfromPict functionality of Accusoft ImageGear 20.1. A specially crafted…
- CVE-2023-235711 PoCAn access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request…
- CVE-2023-235811 PoCA denial-of-service vulnerability exists in the vpnserver EnSafeHttpHeaderValueStr functionality of SoftEther VPN 5.01.9674 and 5.02. A…
- CVE-2023-235831 PoCSequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to…
- CVE-2023-235961 PoCjc21 NGINX Proxy Manager through 2.9.19 allows OS command injection. When creating an access list, the backend builds an htpasswd file…
- CVE-2023-236071 PoCUnrestricted file upload leads to Remote Code Execution in erohtar/Dasherr
- CVE-2023-236081 PoCspotipy Path traversal vulnerability that may lead to type confusion in URI handling code
- CVE-2023-236141 PoCImproper session handling of "Remember me for 7 days" functionality
- CVE-2023-236341 PoCSQL Injection vulnerability in Documize version 5.4.2, allows remote attackers to execute arbitrary code via the user parameter of the…
- CVE-2023-236351 PoCIn Jellyfin 10.8.x through 10.8.3, the name of a collection is vulnerable to stored XSS. This allows an attacker to steal access tokens…
- CVE-2023-236361 PoCIn Jellyfin 10.8.x through 10.8.3, the name of a playlist is vulnerable to stored XSS. This allows an attacker to steal access tokens from…
- CVE-2023-236388 PoCsApache Dubbo Deserialization Vulnerability Gadgets Bypass
- CVE-2023-2375267 PoCsKEV[20230201] - Core - Improper access check in webservice endpoints
- CVE-2023-238971 PoCWordPress Simple Mobile URL Redirect Plugin <= 1.7.2 is vulnerable to Cross Site Request Forgery (CSRF)
- CVE-2023-239021 PoCA buffer overflow vulnerability exists in the uhttpd login functionality of Milesight UR32L v32.3.0.5. A specially crafted network request…
- CVE-2023-239071 PoCA directory traversal vulnerability exists in the server.js start functionality of Milesight VPN v2.0.2. A specially-crafted network…
- CVE-2023-239242 PoCsURI validation failure on SVG parsing in Dompdf
- CVE-2023-239271 PoCCraft CMS stored cross-site scripting vulnerability
- CVE-2023-239301 PoCvantage6's Pickle serialization is insecure
- CVE-2023-239341 PoCWrkzeug's incorrect parsing of nameless cookies leads to __Host- cookies bypass
- CVE-2023-239462 PoCsGit's `git apply` overwriting paths outside the working tree
- CVE-2023-239481 PoCownCloud Android app vulnerable to SQL Injection
- CVE-2023-239561 PoCA user can supply malicious HTML and JavaScript code that will be executed in the client browser