24021 Total CVEs
23926 AI Analyzed
338 CISA KEV
5516 Critical
All Vendors
Showing 22751-22800 of 24021 CVEs Page 456 of 481
CVE-2023-53963
Analyzed
9.8
SOUND4 Impact/Pulse/First

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated OS command injection vulnerability that allows remote attackers to execute arbitrary sh...

2025-12-23
CVE-2023-53962
Analyzed
7.5
SOUND4 Impact/Pulse/First

SOUND4 IMPACT/FIRST/PULSE/Eco v2

2025-12-23
CVE-2023-53960
Analyzed
8.2
SOUND4 Impact/Pulse/First

SOUND4 IMPACT/FIRST/PULSE/Eco version 2

2025-12-23
CVE-2023-53959
Analyzed
9.8
filezilla-project FileZilla Client

FileZilla Client 3.63.1 contains a DLL hijacking vulnerability that allows attackers to execute malicious code by placing a crafted TextShaping.dll in...

2025-12-20
CVE-2023-53958
Analyzed
7.5
ltb-project LDAP Tool Box Self Service Password

LDAP Tool Box Self Service Password 1

2025-12-20
CVE-2023-53957
Analyzed
9.8
kimai kimai

Kimai 1.30.10 contains a SameSite cookie vulnerability that allows attackers to steal user session cookies through malicious exploitation. Attackers c...

2025-12-20
CVE-2023-53956
Analyzed
8.8
altervista flatnux

Flatnux 2021-03

2025-12-20
CVE-2023-53955
Analyzed
9.8
SOUND4 Impact/Pulse/First

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access...

2025-12-23
CVE-2023-53952
Analyzed
8.8
Dotclear Dotclear

Dotclear 2

2025-12-20
CVE-2023-53951
Analyzed
9.8
Gauzy ever gauzy

Ever Gauzy v0.281.9 contains a JWT authentication vulnerability that allows attackers to exploit weak HMAC secret key implementation. Attackers can le...

2025-12-20
CVE-2023-53950
Analyzed
9.8
innovastudio WYSIWYG Editor

InnovaStudio WYSIWYG Editor 5.4 contains an unrestricted file upload vulnerability that allows attackers to bypass file extension restrictions through...

2025-12-20
CVE-2023-53949
Analyzed
8.4
Aspemail AspEmail

AspEmail 5

2025-12-20
CVE-2023-53948
Analyzed
9.8
cat03 Lilac-Reloaded

Lilac-Reloaded for Nagios 2.0.8 contains a remote code execution vulnerability in the autodiscovery feature that allows attackers to inject arbitrary...

2025-12-20
CVE-2023-53947
Analyzed
8.4
oscinventory OCS Inventory NG

OCS Inventory NG 2

2025-12-20
CVE-2023-53946
Analyzed
8.4
Arcsoft PhotoStudio

Arcsoft PhotoStudio 6

2025-12-20
CVE-2023-53945
Analyzed
8.8
brainycp BrainyCP

BrainyCP 1

2025-12-20
CVE-2023-53942
Analyzed
8.8
leefish File Thingie

File Thingie 2

2025-12-19
CVE-2023-53941
Analyzed
9.8
Easyphp EasyPHP Webserver

EasyPHP Webserver 14.1 contains an OS command injection vulnerability that allows unauthenticated attackers to execute arbitrary system commands by in...

2025-12-19
CVE-2023-53940
Analyzed
7.8
Alfonzm Codigo Markdown Editor

Codigo Markdown Editor 1

2025-12-20
CVE-2023-53937
Analyzed
7.8
Hubstaff Hubstaff

Hubstaff 1

2025-12-20
CVE-2023-53934
Analyzed
7.5
Kentico Xperience

A denial of service vulnerability in Kentico Xperience allows attackers to launch DoS attacks via specially crafted requests to the GetResource handle...

2025-12-20
CVE-2023-53933
Analyzed
8.8
s9y Serendipity

Serendipity 2

2025-12-18
CVE-2023-53930
Analyzed
9.8
projectSend projectSend

ProjectSend r1605 contains an insecure direct object reference vulnerability that allows unauthenticated attackers to download private files by manipu...

2025-12-18
CVE-2023-53929
Analyzed
8.8
phpMyFAQ phpMyFAQ

phpMyFAQ 3

2025-12-18
CVE-2023-53927
Analyzed
8.8
PHPJabbers Simple CMS

PHPJabbers Simple CMS 5

2025-12-18
CVE-2023-53926
Analyzed
9.8
PHPJabbers Simple CMS

PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries...

2025-12-18
CVE-2023-53924
Analyzed
8.8
Ulicms Ulicms

UliCMS 2023

2025-12-18
CVE-2023-53923
Analyzed
9.8
Ulicms Ulicms

UliCMS 2023.1 contains a privilege escalation vulnerability that allows unauthenticated attackers to create administrative accounts through the UserCo...

2025-12-18
CVE-2023-53922
Analyzed
9.8
TinyWebGallery TinyWebGallery

TinyWebGallery v2.5 contains a remote code execution vulnerability in the admin upload functionality that allows unauthenticated attackers to upload m...

2025-12-18
CVE-2023-53921
Analyzed
9.8
Sitemagic SitemagicCMS

SitemagicCMS 4.4.3 contains a remote code execution vulnerability that allows attackers to upload malicious PHP files to the files/images directory. A...

2025-12-18
CVE-2023-53914
Analyzed
9.8
Ulicms Ulicms

UliCMS 2023.1 contains an authentication bypass vulnerability that allows unauthenticated attackers to create admin users through mass assignment in t...

2025-12-18
CVE-2023-53913
Analyzed
8.8
Rukovoditel Rukovoditel

Rukovoditel 3

2025-12-18
CVE-2023-53905
Analyzed
8.8
projectSend projectSend

ProjectSend r1605 contains a CSV injection vulnerability that allows authenticated users to inject malicious formulas into user profile names

2025-12-18
CVE-2023-53900
Analyzed
8.8
SPIP SPIP

Spip 4

2025-12-17
CVE-2023-53899
Analyzed
9.8
PodcastGenerator

PodcastGenerator 3.2.9 contains a blind server-side request forgery vulnerability that allows attackers to inject XML in the episode upload form. Atta...

2025-12-17
CVE-2023-53896
Analyzed
7.5
D-Link DAP-1325

D-Link DAP-1325 firmware version 1

2025-12-17
CVE-2023-53895
Analyzed
9.8
Pimpmylog PimpMyLog

PimpMyLog 1.7.14 contains an improper access control vulnerability that allows remote attackers to create admin accounts without authorization through...

2025-12-17
CVE-2023-53894
Analyzed
9.8
dulldusk phpfm

phpfm 1.7.9 contains an authentication bypass vulnerability that allows attackers to log in by exploiting loose type comparison in password hash valid...

2025-12-17
CVE-2023-53888
Analyzed
8.8
Zomplog Zomplog

Zomplog 3

2026-05-26
CVE-2023-53691
Analyzed
8.3
Hikvision CSMP iSecure Center

Hikvision CSMP (Comprehensive Security Management Platform) iSecure Center through 2023-06-25 allows file upload via /center/api/files directory trave...

2025-10-22
CVE-2023-52163
KEV Analyzed
9.5
Digiever DS-2105 Pro

Digiever DS-2105 Pro Missing Authorization Vulnerability - Active in CISA KEV catalog.

2025-12-23
CVE-2023-50897
Analyzed
9.1
Meow Apps Media File Renamer

Unrestricted Upload of File with Dangerous Type vulnerability in Meow Apps Media File Renamer allows Using Malicious Files.This issue affects Media Fi...

2026-01-06
CVE-2023-50780
Analyzed
8.8
Apache Apache ActiveMQ Artemis

Apache ActiveMQ Artemis allows access to diagnostic information and controls through MBeans, which are also exposed through the authenticated Jolokia...

2026-06-16
CVE-2023-50224
KEV Analyzed
9.5
TP-Link TL-WR841N

TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability - Active in CISA KEV catalog.

2025-09-03
CVE-2023-49900
Analyzed
9.8
X-Rite MA-T6

The X-Rite MA-T6 device is vulnerable to remote code execution due to improper input sanitization in the SetParameter command.

2026-07-17
CVE-2023-49899
Analyzed
9.8
X-Rite MA-T6

An origin validation error in the X-Rite MA-T6 device allows unauthenticated remote attackers to execute arbitrary commands on the affected hardware.

2026-07-17
CVE-2023-49886
Analyzed
9.8
IBM Transformation Extender Advanced

IBM Standards Processing Engine 10.0.1.10 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe java deserializat...

2025-10-06
CVE-2023-49565
Analyzed
8.4
Nokia CBIS,NCS

The cbis_manager Podman container is vulnerable to remote command execution via the /api/plugins endpoint

2025-09-18
CVE-2023-49564
Analyzed
8.8
Nokia CBIS,NCS

The CBIS/NCS Manager API is vulnerable to an authentication bypass

2025-09-18
CVE-2023-49367
Analyzed
8.8
Unknown

An issue in user interface in Kyocera Command Center RX EXOSYS M5521cdn allows remote to obtain sensitive information via inspecting sent packages by...

2025-09-19