2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4276 | — | — | 3.5% | Sep 28, 2013 | Multiple stack-based buffer overflows in LittleCMS (aka lcms or liblcms) 1.19 and earlier allow remote attackers to caus... |
| CVE-2013-4244 | — | — | 2.7% | Sep 28, 2013 | The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a den... |
| CVE-2013-4112 | — | — | 1.6% | Sep 28, 2013 | The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obt... |
| CVE-2013-2068 | — | — | 58.6% | Sep 28, 2013 | Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow re... |
| CVE-2013-1921 | — | — | 0.2% | Sep 28, 2013 | PicketBox, as used in Red Hat JBoss Enterprise Application Platform before 6.1.1, allows local users to obtain the admin... |
| CVE-2013-5161 | — | — | 0.3% | Sep 28, 2013 | Passcode Lock in Apple iOS before 7.0.2 does not properly manage the lock state, which allows physically proximate attac... |
| CVE-2013-5160 | — | — | 0.3% | Sep 28, 2013 | Passcode Lock in Apple iOS before 7.0.2 on iPhone devices allows physically proximate attackers to bypass an intended pa... |
| CVE-2013-0598 | — | — | 0.6% | Sep 28, 2013 | Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 be... |
| CVE-2013-5498 | — | — | 2.3% | Sep 27, 2013 | The PPTP-ALG component in CRS Carrier Grade Services Engine (CGSE) and ASR 9000 Integrated Service Module (ISM) in Cisco... |
| CVE-2013-5403 | — | — | 2.4% | Sep 27, 2013 | Unspecified vulnerability on the IBM WebSphere DataPower XC10 appliance 2.0 through 2.5.0.1 allows remote attackers to o... |
| CVE-2013-5943 | — | — | 1.2% | Sep 27, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in Graphite before 0.9.11 allow remote attackers to inject arbitrary... |
| CVE-2013-5942 | — | — | 2.1% | Sep 27, 2013 | Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary... |
| CVE-2013-5481 | — | — | 2.0% | Sep 27, 2013 | The PPTP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a de... |
| CVE-2013-5480 | — | — | 1.3% | Sep 27, 2013 | The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to ca... |
| CVE-2013-5479 | — | — | 1.9% | Sep 27, 2013 | The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to ca... |
| CVE-2013-5478 | — | — | 1.9% | Sep 27, 2013 | Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a ... |
| CVE-2013-5477 | — | — | 1.9% | Sep 27, 2013 | The T1/E1 driver-queue functionality in Cisco IOS 12.2 and 15.0 through 15.3, when an HDLC32 driver is used, allows remo... |
| CVE-2013-5476 | — | — | 1.9% | Sep 27, 2013 | The Zone-Based Firewall (ZFW) feature in Cisco IOS 15.1 through 15.2, when content filtering or HTTP ALG inspection is e... |
| CVE-2013-5475 | — | — | 1.9% | Sep 27, 2013 | Cisco IOS 12.2 through 12.4 and 15.0 through 15.3, and IOS XE 2.1 through 3.9, allows remote attackers to cause a denial... |
| CVE-2013-5474 | — | — | 1.4% | Sep 27, 2013 | Race condition in the IPv6 virtual fragmentation reassembly (VFR) implementation in Cisco IOS 12.2 through 12.4 and 15.0... |
| CVE-2013-5473 | — | — | 2.0% | Sep 27, 2013 | Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S through 3.4.5S; and IOS XE 3.6.xS before 3.6.1S allows remo... |
| CVE-2013-5472 | — | — | 1.7% | Sep 27, 2013 | The NTP implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.1, and IOS XE 2.1 through 3.3, does not proper... |
| CVE-2013-5093 | — | — | 38.7% | Sep 27, 2013 | The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through 0.9.10 uses the pickle Python ... |
| CVE-2013-4626 | — | — | 2.1% | Sep 26, 2013 | Cross-site scripting (XSS) vulnerability in the BackWPup plugin before 3.0.13 for WordPress allows remote attackers to i... |
| CVE-2013-5575 | — | — | — | Sep 26, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now