2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-4263——libavfilter in FFmpeg before 2.0.1 has unspecified impact and remote vectors related to a crafted "plane," which trigger...
CVE-2013-4214——rss-newsfeed.php in Nagios Core 3.4.4, 3.5.1, and earlier, when MAGPIE_CACHE_ON is set to 1, allows local users to overw...
CVE-2013-2029——nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows...
CVE-2013-0878——The advance_line function in libavcodec/targa.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified im...
CVE-2013-0877——The old_codec37 function in libavcodec/sanm.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impa...
CVE-2013-0876——Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1....
CVE-2013-0875——The ff_add_png_paeth_prediction function in libavcodec/pngdec.c in FFmpeg before 1.1.3 allows remote attackers to have a...
CVE-2013-0874——The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to h...
CVE-2013-0873——The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified i...
CVE-2013-0872——The swr_init function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecifie...
CVE-2013-6375——Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present...
CVE-2013-4589——The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a ...
CVE-2013-4545——cURL and libcurl 7.18.0 through 7.32.0, when built with OpenSSL, disables the certificate CN and SAN name field verifica...
CVE-2013-4485——389 Directory Server 1.2.11.15 (aka Red Hat Directory Server before 8.2.11-14) allows remote authenticated users to caus...
CVE-2013-4482——Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscrip...
CVE-2013-4481——Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the ...
CVE-2013-4474——Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote ...
CVE-2013-4473——Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote ...
CVE-2013-1813——util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories...
CVE-2013-0281——Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not l...
CVE-2013-6342——Cross-site scripting (XSS) vulnerability in the Tweet Blender plugin before 4.0.2 for WordPress allows remote attackers ...
CVE-2013-6377——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2013-6699——The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller...
CVE-2013-6698——The web interface on Cisco Wireless LAN Controller (WLC) devices does not properly restrict use of IFRAME elements, whic...
CVE-2013-6694——The IPSec implementation in Cisco IOS allows remote attackers to cause a denial of service (MTU change and tunnel-sessio...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now