2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-5618CRITICAL9.8Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user interface in the editor ...
CVE-2013-5616CRITICAL9.8Use-after-free vulnerability in the nsEventListenerManager::HandleEventSubType function in Mozilla Firefox before 26.0, ...
CVE-2013-5615CRITICAL9.8The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and...
CVE-2013-5614——Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME elemen...
CVE-2013-5613CRITICAL9.8Use-after-free vulnerability in the PresShell::DispatchSynthMouseMove function in Mozilla Firefox before 26.0, Firefox E...
CVE-2013-5612——Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for re...
CVE-2013-5611——Mozilla Firefox before 26.0 does not properly remove the Application Installation doorhanger, which makes it easier for ...
CVE-2013-5610——Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 allo...
CVE-2013-5609CRITICAL9.8Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2,...
CVE-2013-5334——Adobe Shockwave Player before 12.0.7.148 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2013-5333——Adobe Shockwave Player before 12.0.7.148 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2013-5332——Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2...
CVE-2013-5331——Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2...
CVE-2013-5072——Cross-site scripting (XSS) vulnerability in Outlook Web Access in Microsoft Exchange Server 2010 SP2 and SP3 and 2013 Cu...
CVE-2013-5059——Microsoft SharePoint Server 2010 SP1 and SP2 and 2013, and Office Web Apps 2013, allows remote attackers to execute arbi...
CVE-2013-5058——Integer overflow in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista ...
CVE-2013-5057——hxds.dll in Microsoft Office 2007 SP3 and 2010 SP1 and SP2 does not implement the ASLR protection mechanism, which makes...
CVE-2013-5056——Use-after-free vulnerability in the Scripting Runtime Object Library in Microsoft Windows XP SP2 and SP3, Windows Server...
CVE-2013-5054——Microsoft Office 2013 and 2013 RT allows remote attackers to discover authentication tokens via a crafted response to a ...
CVE-2013-5052——Microsoft Internet Explorer 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor...
CVE-2013-5051——Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (me...
CVE-2013-5049——Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (...
CVE-2013-5048——Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2013-5047——Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2013-5046——Microsoft Internet Explorer 7 through 11 allows local users to bypass the Protected Mode protection mechanism, and conse...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now