2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5530 | — | — | 2.3% | Oct 25, 2013 | The web framework in Cisco Identity Services Engine (ISE) 1.0 and 1.1.0 before 1.1.0.665-5, 1.1.1 before 1.1.1.268-7, 1.... |
| CVE-2013-5522 | — | — | 0.3% | Oct 25, 2013 | Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to ga... |
| CVE-2013-5521 | — | — | 1.2% | Oct 25, 2013 | Cisco Identity Services Engine does not properly restrict the creation of guest accounts, which allows remote attackers ... |
| CVE-2013-3280 | — | — | 2.3% | Oct 25, 2013 | EMC RSA Authentication Agent 7.1.x before 7.1.2 for Web for Internet Information Services has a fail-open design, which ... |
| CVE-2013-5537 | — | — | 1.3% | Oct 24, 2013 | The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management... |
| CVE-2013-5536 | — | — | 1.5% | Oct 24, 2013 | Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remo... |
| CVE-2013-5148 | — | — | 0.3% | Oct 24, 2013 | Apple Keynote before 6.0 does not properly handle the interaction between Keynote presentation mode and the Screen Lock ... |
| CVE-2013-5143 | — | — | 0.6% | Oct 24, 2013 | The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified cir... |
| CVE-2013-5130 | — | — | 0.9% | Oct 24, 2013 | WebKit in Apple Safari before 6.1 disables the Private Browsing feature upon a launch of the Web Inspector, which makes ... |
| CVE-2013-4443 | — | — | — | Oct 24, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2013-4299 | — | — | 3.8% | Oct 24, 2013 | Interpretation conflict in drivers/md/dm-snap-persistent.c in the Linux kernel through 3.11.6 allows remote authenticate... |
| CVE-2013-1743 | — | — | 2.8% | Oct 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in report.cgi in Bugzilla 4.1.x and 4.2.x before 4.2.7 and 4.3.x and... |
| CVE-2013-1742 | — | — | 2.4% | Oct 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; ... |
| CVE-2013-1734 | — | — | 0.6% | Oct 24, 2013 | Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x a... |
| CVE-2013-1733 | — | — | 0.6% | Oct 24, 2013 | Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attacker... |
| CVE-2013-6246 | — | — | 5.9% | Oct 24, 2013 | The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protections and obtain sens... |
| CVE-2013-5192 | — | — | 0.3% | Oct 24, 2013 | The USB hub controller in Apple Mac OS X before 10.9 allows local users to cause a denial of service (system crash) via ... |
| CVE-2013-5191 | — | — | 0.3% | Oct 24, 2013 | The syslog implementation in Apple Mac OS X before 10.9 allows local users to obtain sensitive information by leveraging... |
| CVE-2013-5190 | — | — | 0.9% | Oct 24, 2013 | Smart Card Services in Apple Mac OS X before 10.9 does not properly implement certificate-revocation checks, which allow... |
| CVE-2013-5189 | — | — | 1.2% | Oct 24, 2013 | Apple Mac OS X before 10.9 does not preserve a certain administrative system-preferences setting across software updates... |
| CVE-2013-5188 | — | — | 0.3% | Oct 24, 2013 | The Screen Lock implementation in Apple Mac OS X before 10.9, when hibernation and autologin are enabled, does not requi... |
| CVE-2013-5187 | — | — | 0.3% | Oct 24, 2013 | The Screen Lock implementation in Apple Mac OS X before 10.9 does not immediately accept Keychain Status menu Lock Scree... |
| CVE-2013-5186 | — | — | 0.4% | Oct 24, 2013 | Power Management in Apple Mac OS X before 10.9 does not properly handle the interaction between locking and power assert... |
| CVE-2013-5185 | — | — | 0.9% | Oct 24, 2013 | The ldapsearch command-line program in OpenLDAP in Apple Mac OS X before 10.9 does not properly process the minssf confi... |
| CVE-2013-5184 | — | — | 0.6% | Oct 24, 2013 | The kernel in Apple Mac OS X before 10.9 does not properly check for errors during the processing of multicast Wi-Fi pac... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now