2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-5530The web framework in Cisco Identity Services Engine (ISE) 1.0 and 1.1.0 before 1.1.0.665-5, 1.1.1 before 1.1.1.268-7, 1....
CVE-2013-5522Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to ga...
CVE-2013-5521Cisco Identity Services Engine does not properly restrict the creation of guest accounts, which allows remote attackers ...
CVE-2013-3280EMC RSA Authentication Agent 7.1.x before 7.1.2 for Web for Internet Information Services has a fail-open design, which ...
CVE-2013-5537The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management...
CVE-2013-5536Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remo...
CVE-2013-5148Apple Keynote before 6.0 does not properly handle the interaction between Keynote presentation mode and the Screen Lock ...
CVE-2013-5143The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified cir...
CVE-2013-5130WebKit in Apple Safari before 6.1 disables the Private Browsing feature upon a launch of the Web Inspector, which makes ...
CVE-2013-4443Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2013-4299Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticate...
CVE-2013-1743Multiple cross-site scripting (XSS) vulnerabilities in report.cgi in Bugzilla 4.1.x and 4.2.x before 4.2.7 and 4.3.x and...
CVE-2013-1742Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; ...
CVE-2013-1734Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x a...
CVE-2013-1733Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attacker...
CVE-2013-6246The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protections and obtain sens...
CVE-2013-5192The USB hub controller in Apple Mac OS X before 10.9 allows local users to cause a denial of service (system crash) via ...
CVE-2013-5191The syslog implementation in Apple Mac OS X before 10.9 allows local users to obtain sensitive information by leveraging...
CVE-2013-5190Smart Card Services in Apple Mac OS X before 10.9 does not properly implement certificate-revocation checks, which allow...
CVE-2013-5189Apple Mac OS X before 10.9 does not preserve a certain administrative system-preferences setting across software updates...
CVE-2013-5188The Screen Lock implementation in Apple Mac OS X before 10.9, when hibernation and autologin are enabled, does not requi...
CVE-2013-5187The Screen Lock implementation in Apple Mac OS X before 10.9 does not immediately accept Keychain Status menu Lock Scree...
CVE-2013-5186Power Management in Apple Mac OS X before 10.9 does not properly handle the interaction between locking and power assert...
CVE-2013-5185The ldapsearch command-line program in OpenLDAP in Apple Mac OS X before 10.9 does not properly process the minssf confi...
CVE-2013-5184The kernel in Apple Mac OS X before 10.9 does not properly check for errors during the processing of multicast Wi-Fi pac...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now