2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-6961——Cross-site scripting (XSS) vulnerability in the Collaboration Partner Access Console (CPAC) in Cisco WebEx Meeting Cente...
CVE-2013-6960——Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meeting Center allow remote attackers to inject arbit...
CVE-2013-6959——Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites...
CVE-2013-6711——Cross-site scripting (XSS) vulnerability in the product-creation administrative page in Cisco WebEx Sales Center allows ...
CVE-2013-6710——Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Training Center allows remote attackers to hijack the aut...
CVE-2013-6709——The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed,...
CVE-2013-5438——Cross-site scripting (XSS) vulnerability in the web server in IBM Flex System Manager (FSM) 1.1.0 through 1.3 allows rem...
CVE-2013-4845——Cross-site scripting (XSS) vulnerability on HP Officejet Pro 8500 (aka A909) All-in-One printers allows remote attackers...
CVE-2013-4001——Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions v...
CVE-2013-4000——Multiple cross-site request forgery (CSRF) vulnerabilities in IBM Cognos Command Center before 10.2 allow remote attacke...
CVE-2013-3043——Directory traversal vulnerability in the client in IBM Rational Software Architect Design Manager and Rhapsody Design Ma...
CVE-2013-3042——Directory traversal vulnerability in the server in IBM Rational Software Architect Design Manager and Rhapsody Design Ma...
CVE-2013-7105——Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0,...
CVE-2013-6271——Android 4.0 through 4.3 allows attackers to bypass intended access restrictions and remove device locks via a crafted ap...
CVE-2013-4520——xslt.c in libxslt before 1.1.25 allows context-dependent attackers to cause a denial of service (crash) via a stylesheet...
CVE-2013-6376——The recalculate_apic_map function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows...
CVE-2013-6368——The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause a denial of service ...
CVE-2013-6367——The apic_get_tmcct function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest...
CVE-2013-4587——Array index error in the kvm_vm_ioctl_create_vcpu function in virt/kvm/kvm_main.c in the KVM subsystem in the Linux kern...
CVE-2013-7104——McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands by specifying them in ...
CVE-2013-7103——McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands via shell metacharacte...
CVE-2013-7085——Uscan in devscripts 2.13.5, when USCAN_EXCLUSION is enabled, allows remote attackers to delete arbitrary files via a whi...
CVE-2013-7069——ack 2.00 through 2.11_02 allows remote attackers to execute arbitrary code via a (1) --pager, (2) --regex, or (3) --outp...
CVE-2013-6428——The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote a...
CVE-2013-6426——The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before iceho...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now