2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4818 | — | — | 3.3% | Sep 23, 2013 | Unspecified vulnerability in HP IceWall SSO 8.0 through 10.0, IceWall SSO Agent Option 8.0 through 10.0, IceWall SSO Sma... |
| CVE-2013-4817 | — | — | 2.2% | Sep 23, 2013 | Unspecified vulnerability in HP IceWall SSO Agent Option 8.0 through 10.0 allows remote attackers to obtain sensitive in... |
| CVE-2013-4814 | — | — | 1.6% | Sep 23, 2013 | Cross-site scripting (XSS) vulnerability in HP XP P9000 Command View Advanced Edition Suite Software 7.x before 7.5.0-02... |
| CVE-2013-4325 | — | — | 0.4% | Sep 23, 2013 | The check_permission_v1 function in base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.9 does not proper... |
| CVE-2013-5696 | — | — | 7.9% | Sep 23, 2013 | inc/central.class.php in GLPI before 0.84.2 does not attempt to make install/install.php unavailable after an installati... |
| CVE-2013-4815 | — | — | 0.9% | Sep 20, 2013 | Cross-site scripting (XSS) vulnerability in the web interface in HP ArcSight Enterprise Security Manager (ESM) before 5.... |
| CVE-2013-4053 | — | — | 1.3% | Sep 20, 2013 | The WS-Security implementation in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 b... |
| CVE-2013-4052 | — | — | 1.8% | Sep 20, 2013 | Cross-site scripting (XSS) vulnerability in the UDDI Administrative console in IBM WebSphere Application Server (WAS) 6.... |
| CVE-2013-0596 | — | — | 1.8% | Sep 20, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2013-3473 | — | — | 1.5% | Sep 20, 2013 | The web framework in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance before 9.1.1 does not properl... |
| CVE-2013-5501 | — | — | 1.8% | Sep 20, 2013 | Cross-site scripting (XSS) vulnerability in the oraservice page in Cisco MediaSense allows remote attackers to inject ar... |
| CVE-2013-5500 | — | — | 1.8% | Sep 20, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the oraadmin service page in Cisco MediaSense allow remote attack... |
| CVE-2013-1130 | — | — | 0.5% | Sep 20, 2013 | Cisco AnyConnect Secure Mobility Client on Mac OS X uses weak permissions for a library directory, which allows local us... |
| CVE-2013-4709 | — | — | 2.7% | Sep 20, 2013 | Buffer overflow in the PPP Access Concentrator (PPPAC) on the SEIL/x86 with firmware before 2.82, SEIL/X1 with firmware ... |
| CVE-2013-4707 | — | — | 1.1% | Sep 20, 2013 | The SSH implementation on D-Link Japan DES-3810 devices with firmware before R2.20.011 allows remote authenticated users... |
| CVE-2013-4706 | — | — | 1.1% | Sep 20, 2013 | The SSH implementation on the D-Link Japan DWL-2100AP with firmware before R252JP-RC572 allows remote authenticated user... |
| CVE-2013-4068 | — | — | 4.0% | Sep 20, 2013 | Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to exe... |
| CVE-2013-5497 | — | — | 1.9% | Sep 19, 2013 | The authentication manager process in the web framework in Cisco Intrusion Prevention System (IPS) does not properly han... |
| CVE-2013-1121 | — | — | 1.1% | Sep 19, 2013 | The regex engine in the BGP implementation in Cisco NX-OS, when a complex regular expression is configured for inbound r... |
| CVE-2013-5159 | — | — | 1.8% | Sep 19, 2013 | WebKit in Apple iOS before 7 allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive i... |
| CVE-2013-5158 | — | — | 0.4% | Sep 19, 2013 | The Social subsystem in Apple iOS before 7 does not properly restrict access to the cache of Twitter icons, which allows... |
| CVE-2013-5157 | — | — | 1.5% | Sep 19, 2013 | The Twitter subsystem in Apple iOS before 7 does not require API conformity for access to Twitter daemon interfaces, whi... |
| CVE-2013-5156 | — | — | 1.4% | Sep 19, 2013 | The Telephony subsystem in Apple iOS before 7 does not require API conformity for access to telephony-daemon interfaces,... |
| CVE-2013-5155 | — | — | 1.6% | Sep 19, 2013 | The Sandbox subsystem in Apple iOS before 7 allows attackers to cause a denial of service (infinite loop) via an applica... |
| CVE-2013-5154 | — | — | 1.4% | Sep 19, 2013 | The Sandbox subsystem in Apple iOS before 7 determines the sandboxing requirement for a #! application on the basis of t... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now