2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5389 | — | — | 0.9% | Oct 22, 2013 | Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote a... |
| CVE-2013-5388 | — | — | 0.9% | Oct 22, 2013 | Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.3 before FP5 IF2 and 9.0 before IF5 allows remote a... |
| CVE-2013-1739 | — | — | 3.4% | Oct 22, 2013 | Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read o... |
| CVE-2013-5550 | — | — | 0.3% | Oct 22, 2013 | The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to cause a denial of servic... |
| CVE-2013-5544 | — | — | 1.7% | Oct 22, 2013 | The VPN authentication functionality in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to caus... |
| CVE-2013-5446 | — | — | 1.7% | Oct 22, 2013 | The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which h... |
| CVE-2013-5428 | — | — | 1.7% | Oct 22, 2013 | IBM WebSphere DataPower XC10 appliances 2.5.0 do not require authentication for all administrative actions, which allows... |
| CVE-2013-4382 | — | — | — | Oct 21, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5937. Reason: This candidate is a duplicate of... |
| CVE-2013-4381 | — | — | — | Oct 21, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5938. Reason: This candidate is a duplicate of... |
| CVE-2013-4450 | — | — | 37.2% | Oct 21, 2013 | The HTTP server in Node.js 0.10.x before 0.10.21 and 0.8.x before 0.8.26 allows remote attackers to cause a denial of se... |
| CVE-2013-5971 | — | — | 2.0% | Oct 21, 2013 | Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remo... |
| CVE-2013-5970 | — | — | 1.5% | Oct 21, 2013 | hostd-vmdb in VMware ESXi 4.0 through 5.0 and ESX 4.0 through 4.1 allows remote attackers to cause a denial of service (... |
| CVE-2013-5542 | — | — | 1.9% | Oct 21, 2013 | Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.2), 8.7 before 8.7(1.8), 9.0 before 9.0(3.6), and 9.1 ... |
| CVE-2013-6129 | — | — | 51.9% | Oct 19, 2013 | The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the ... |
| CVE-2013-6027 | — | — | 4.7% | Oct 19, 2013 | Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow rem... |
| CVE-2013-6026 | — | — | 7.7% | Oct 19, 2013 | The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Plane... |
| CVE-2013-6025 | — | — | 8.2% | Oct 19, 2013 | The XMLParse procedure in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 ESD 2 allows remote authenticated users to re... |
| CVE-2013-6021 | — | — | 12.2% | Oct 19, 2013 | Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code ... |
| CVE-2013-5702 | — | — | 1.0% | Oct 19, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in WatchGuard WSM and Fireware before 11.8 allow remote... |
| CVE-2013-5534 | — | — | 1.5% | Oct 19, 2013 | Directory traversal vulnerability in the attachment service in the Voice Message Web Service (aka VMWS or Cisco Unity We... |
| CVE-2013-5372 | — | — | 2.8% | Oct 19, 2013 | The XML4J parser in IBM WebSphere Message Broker 6.1 before 6.1.0.12, 7.0 before 7.0.0.7, and 8.0 before 8.0.0.4 and IBM... |
| CVE-2013-4712 | — | — | 2.0% | Oct 19, 2013 | I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows re... |
| CVE-2013-6170 | — | — | 2.0% | Oct 17, 2013 | Juniper Junos 10.0 before 10.0S28, 10.4 before 10.4R7, 11.1 before 11.1R5, 11.2 before 11.2R2, and 11.4 before 11.4R1, w... |
| CVE-2013-6169 | — | — | 1.6% | Oct 17, 2013 | The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote a... |
| CVE-2013-6015 | — | — | 2.0% | Oct 17, 2013 | Juniper Junos before 10.4S14, 11.4 before 11.4R5-S2, 12.1R before 12.1R3, 12.1X44 before 12.1X44-D20, and 12.1X45 before... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now