2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4227 | HIGH | 8.8 | 0.8% | Feb 18, 2020 | Cross-site request forgery (CSRF) vulnerability in the persona_xsrf_token function in persona.module in the Mozilla Pers... |
| CVE-2013-4454 | CRITICAL | 9.1 | 3.4% | Feb 18, 2020 | WordPress Portable phpMyAdmin Plugin 1.4.1 has Multiple Security Bypass Vulnerabilities |
| CVE-2013-5594 | MEDIUM | 4.3 | 0.7% | Feb 18, 2020 | Mozilla Firefox before 25 allows modification of anonymous content of pluginProblem.xml binding |
| CVE-2013-7324 | MEDIUM | 5.3 | 1.4% | Feb 17, 2020 | Webkit-GTK 2.x (any version with HTML5 audio/video support based on GStreamer) allows remote attackers to trigger unexpe... |
| CVE-2013-3722 | HIGH | 7.5 | 1.1% | Feb 17, 2020 | A Denial of Service (infinite loop) exists in OpenSIPS before 1.10 in lookup.c. |
| CVE-2013-3738 | CRITICAL | 9.8 | 3.1% | Feb 17, 2020 | A File Inclusion vulnerability exists in Zabbix 2.0.6 due to inadequate sanitization of request strings in CGI scripts, ... |
| CVE-2013-4211 | CRITICAL | 9.8 | 75.9% | Feb 14, 2020 | A Code Execution Vulnerability exists in OpenX Ad Server 2.8.10 due to a backdoor in flowplayer-3.1.1.min.js library, wh... |
| CVE-2013-5687 | HIGH | 7.5 | 1.4% | Feb 14, 2020 | RiskNet Acquirer before hotfix 6.0 b7+ADHOC-443 ApplicationServiceBean contains a service information disclosure. |
| CVE-2013-5212 | MEDIUM | 6.1 | 0.9% | Feb 14, 2020 | Cross-site Scripting (XSS) in EasyXDM before 2.4.18 allows remote attackers to inject arbitrary web script or html via t... |
| CVE-2013-4792 | MEDIUM | 5.5 | 0.3% | Feb 14, 2020 | PrestaShop before 1.4.11 allows logout CSRF. |
| CVE-2013-4791 | MEDIUM | 5.4 | 0.6% | Feb 14, 2020 | PrestaShop before 1.4.11 allows Logistician, translators and other low level profiles/accounts to inject a persistent XS... |
| CVE-2013-7287 | CRITICAL | 9.8 | 1.4% | Feb 13, 2020 | MobileIron VSP < 5.9.1 and Sentry < 5.0 has an insecure encryption scheme. |
| CVE-2013-7173 | CRITICAL | 9.8 | 2.0% | Feb 13, 2020 | Belkin n750 routers have a buffer overflow. |
| CVE-2013-7098 | CRITICAL | 9.8 | 1.5% | Feb 13, 2020 | OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection. |
| CVE-2013-6927 | MEDIUM | 5.5 | 0.3% | Feb 13, 2020 | Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account. |
| CVE-2013-6362 | CRITICAL | 9.8 | 1.2% | Feb 13, 2020 | Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts. |
| CVE-2013-6360 | HIGH | 7.5 | 1.0% | Feb 13, 2020 | TRENDnet TS-S402 has a backdoor to enable TELNET. |
| CVE-2013-6277 | HIGH | 7.5 | 1.5% | Feb 13, 2020 | QNAP VioCard 300 has hardcoded RSA private keys. |
| CVE-2013-1634 | HIGH | 7.5 | 2.5% | Feb 13, 2020 | A denial of service vulnerability exists in some motherboard implementations of Intel e1000e/82574L network controller d... |
| CVE-2013-1401 | CRITICAL | 9.8 | 5.0% | Feb 13, 2020 | Multiple security bypass vulnerabilities in the editAnswer, deleteAnswer, addAnswer, and deletePoll functions in WordPre... |
| CVE-2013-1400 | CRITICAL | 9.8 | 3.2% | Feb 13, 2020 | Multiple SQL injection vulnerabilities in CWPPoll.js in WordPress Poll Plugin 34.5 for WordPress allow attackers to exec... |
| CVE-2013-0295 | — | — | — | Feb 13, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-0342. Reason: This candidate is a duplicate of [... |
| CVE-2013-6022 | MEDIUM | 6.1 | 1.4% | Feb 12, 2020 | A Cross-Site Scripting (XSS) vulnerability exists in Tiki Wiki CMG Groupware 11.0 via the id paraZeroClipboard.swf, whic... |
| CVE-2013-5106 | HIGH | 8.8 | 1.7% | Feb 12, 2020 | A Code Execution vulnerability exists in select.py when using python-mode 2012-12-19. |
| CVE-2013-4602 | MEDIUM | 5.5 | 1.4% | Feb 12, 2020 | A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified fun... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now