2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-4214rss-newsfeed.php in Nagios Core 3.4.4, 3.5.1, and earlier, when MAGPIE_CACHE_ON is set to 1, allows local users to overw...
CVE-2013-2029nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows...
CVE-2013-0878The advance_line function in libavcodec/targa.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified im...
CVE-2013-0877The old_codec37 function in libavcodec/sanm.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impa...
CVE-2013-0876Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1....
CVE-2013-0875The ff_add_png_paeth_prediction function in libavcodec/pngdec.c in FFmpeg before 1.1.3 allows remote attackers to have a...
CVE-2013-0874The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to h...
CVE-2013-0873The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified i...
CVE-2013-0872The swr_init function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecifie...
CVE-2013-6375Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present...
CVE-2013-4589The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a ...
CVE-2013-4545cURL and libcurl 7.18.0 through 7.32.0, when built with OpenSSL, disables the certificate CN and SAN name field verifica...
CVE-2013-4485389 Directory Server 1.2.11.15 (aka Red Hat Directory Server before 8.2.11-14) allows remote authenticated users to caus...
CVE-2013-4482Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscrip...
CVE-2013-4481Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the ...
CVE-2013-4474Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote ...
CVE-2013-4473Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote ...
CVE-2013-1813util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories...
CVE-2013-0281Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not l...
CVE-2013-6342Cross-site scripting (XSS) vulnerability in the Tweet Blender plugin before 4.0.2 for WordPress allows remote attackers ...
CVE-2013-6377Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2013-6699The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller...
CVE-2013-6698The web interface on Cisco Wireless LAN Controller (WLC) devices does not properly restrict use of IFRAME elements, whic...
CVE-2013-6694The IPSec implementation in Cisco IOS allows remote attackers to cause a denial of service (MTU change and tunnel-sessio...
CVE-2013-6312Unspecified vulnerability in IBM Rational Service Tester 8.3.x and 8.5.x before 8.5.1 and Rational Performance Tester 8....

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now