2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-5703——The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute arbitrary JavaScript code, and modify settings or...
CVE-2013-5389——Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote a...
CVE-2013-5388——Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote a...
CVE-2013-1739——Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read o...
CVE-2013-5550——The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to cause a denial of servic...
CVE-2013-5544——The VPN authentication functionality in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to caus...
CVE-2013-5446——The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which h...
CVE-2013-5428——IBM WebSphere DataPower XC10 appliances 2.5.0 do not require authentication for all administrative actions, which allows...
CVE-2013-4382——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5937. Reason: This candidate is a duplicate of...
CVE-2013-4381——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5938. Reason: This candidate is a duplicate of...
CVE-2013-4450——The HTTP server in Node.js 0.10.x before 0.10.21 and 0.8.x before 0.8.26 allows remote attackers to cause a denial of se...
CVE-2013-5971——Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remo...
CVE-2013-5970——hostd-vmdb in VMware ESXi 4.0 through 5.0 and ESX 4.0 through 4.1 allows remote attackers to cause a denial of service (...
CVE-2013-5542——Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.2), 8.7 before 8.7(1.8), 9.0 before 9.0(3.6), and 9.1 ...
CVE-2013-6129——The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the ...
CVE-2013-6027——Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow rem...
CVE-2013-6026——The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Plane...
CVE-2013-6025——The XMLParse procedure in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 ESD 2 allows remote authenticated users to re...
CVE-2013-6021——Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code ...
CVE-2013-5702——Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in WatchGuard WSM and Fireware before 11.8 allow remote...
CVE-2013-5534——Directory traversal vulnerability in the attachment service in the Voice Message Web Service (aka VMWS or Cisco Unity We...
CVE-2013-5372——The XML4J parser in IBM WebSphere Message Broker 6.1 before 6.1.0.12, 7.0 before 7.0.0.7, and 8.0 before 8.0.0.4 and IBM...
CVE-2013-4712——I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows re...
CVE-2013-6170——Juniper Junos 10.0 before 10.0S28, 10.4 before 10.4R7, 11.1 before 11.1R5, 11.2 before 11.2R2, and 11.4 before 11.4R1, w...
CVE-2013-6169——The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote a...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now