2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6960 | — | — | 2.0% | Dec 14, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meeting Center allow remote attackers to inject arbit... |
| CVE-2013-6959 | — | — | 2.1% | Dec 14, 2013 | Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites... |
| CVE-2013-6711 | — | — | 2.1% | Dec 14, 2013 | Cross-site scripting (XSS) vulnerability in the product-creation administrative page in Cisco WebEx Sales Center allows ... |
| CVE-2013-6710 | — | — | 1.2% | Dec 14, 2013 | Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Training Center allows remote attackers to hijack the aut... |
| CVE-2013-6709 | — | — | 1.7% | Dec 14, 2013 | The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed,... |
| CVE-2013-5438 | — | — | 1.8% | Dec 14, 2013 | Cross-site scripting (XSS) vulnerability in the web server in IBM Flex System Manager (FSM) 1.1.0 through 1.3 allows rem... |
| CVE-2013-4845 | — | — | 2.5% | Dec 14, 2013 | Cross-site scripting (XSS) vulnerability on HP Officejet Pro 8500 (aka A909) All-in-One printers allows remote attackers... |
| CVE-2013-4001 | — | — | 1.0% | Dec 14, 2013 | Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions v... |
| CVE-2013-4000 | — | — | 0.6% | Dec 14, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in IBM Cognos Command Center before 10.2 allow remote attacke... |
| CVE-2013-3043 | — | — | 0.6% | Dec 14, 2013 | Directory traversal vulnerability in the client in IBM Rational Software Architect Design Manager and Rhapsody Design Ma... |
| CVE-2013-3042 | — | — | 0.6% | Dec 14, 2013 | Directory traversal vulnerability in the server in IBM Rational Software Architect Design Manager and Rhapsody Design Ma... |
| CVE-2013-7105 | — | — | 1.8% | Dec 14, 2013 | Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0,... |
| CVE-2013-6271 | — | — | 8.9% | Dec 14, 2013 | Android 4.0 through 4.3 allows attackers to bypass intended access restrictions and remove device locks via a crafted ap... |
| CVE-2013-4520 | — | — | 2.4% | Dec 14, 2013 | xslt.c in libxslt before 1.1.25 allows context-dependent attackers to cause a denial of service (crash) via a stylesheet... |
| CVE-2013-6376 | — | — | 1.1% | Dec 14, 2013 | The recalculate_apic_map function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows... |
| CVE-2013-6368 | — | — | 0.6% | Dec 14, 2013 | The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause a denial of service ... |
| CVE-2013-6367 | — | — | 1.4% | Dec 14, 2013 | The apic_get_tmcct function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest... |
| CVE-2013-4587 | — | — | 0.5% | Dec 14, 2013 | Array index error in the kvm_vm_ioctl_create_vcpu function in virt/kvm/kvm_main.c in the KVM subsystem in the Linux kern... |
| CVE-2013-7104 | — | — | 4.3% | Dec 14, 2013 | McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands by specifying them in ... |
| CVE-2013-7103 | — | — | 4.3% | Dec 14, 2013 | McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands via shell metacharacte... |
| CVE-2013-7085 | — | — | 2.5% | Dec 14, 2013 | Uscan in devscripts 2.13.5, when USCAN_EXCLUSION is enabled, allows remote attackers to delete arbitrary files via a whi... |
| CVE-2013-7069 | — | — | 3.1% | Dec 14, 2013 | ack 2.00 through 2.11_02 allows remote attackers to execute arbitrary code via a (1) --pager, (2) --regex, or (3) --outp... |
| CVE-2013-6428 | — | — | 1.7% | Dec 14, 2013 | The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote a... |
| CVE-2013-6426 | — | — | 1.0% | Dec 14, 2013 | The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before iceho... |
| CVE-2013-6411 | — | — | 3.3% | Dec 14, 2013 | The HandleCrashedAircraft function in aircraft_cmd.cpp in OpenTTD 0.3.6 through 1.3.2 allows remote attackers to cause a... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now