2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6027 | — | — | 4.7% | Oct 19, 2013 | Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow rem... |
| CVE-2013-6026 | — | — | 7.7% | Oct 19, 2013 | The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Plane... |
| CVE-2013-6025 | — | — | 8.2% | Oct 19, 2013 | The XMLParse procedure in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 ESD 2 allows remote authenticated users to re... |
| CVE-2013-6021 | — | — | 12.2% | Oct 19, 2013 | Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code ... |
| CVE-2013-5702 | — | — | 1.0% | Oct 19, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in WatchGuard WSM and Fireware before 11.8 allow remote... |
| CVE-2013-5534 | — | — | 1.5% | Oct 19, 2013 | Directory traversal vulnerability in the attachment service in the Voice Message Web Service (aka VMWS or Cisco Unity We... |
| CVE-2013-5372 | — | — | 2.8% | Oct 19, 2013 | The XML4J parser in IBM WebSphere Message Broker 6.1 before 6.1.0.12, 7.0 before 7.0.0.7, and 8.0 before 8.0.0.4 and IBM... |
| CVE-2013-4712 | — | — | 2.0% | Oct 19, 2013 | I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows re... |
| CVE-2013-6170 | — | — | 2.0% | Oct 17, 2013 | Juniper Junos 10.0 before 10.0S28, 10.4 before 10.4R7, 11.1 before 11.1R5, 11.2 before 11.2R2, and 11.4 before 11.4R1, w... |
| CVE-2013-6169 | — | — | 1.6% | Oct 17, 2013 | The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote a... |
| CVE-2013-6015 | — | — | 2.0% | Oct 17, 2013 | Juniper Junos before 10.4S14, 11.4 before 11.4R5-S2, 12.1R before 12.1R3, 12.1X44 before 12.1X44-D20, and 12.1X45 before... |
| CVE-2013-6013 | — | — | 4.0% | Oct 17, 2013 | Buffer overflow in the flow daemon (flowd) in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7-S2, 12.1.X44 before ... |
| CVE-2013-4689 | — | — | 1.0% | Oct 17, 2013 | J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1R before 12.1R6, 12.1X44 before 12.1X44-D15, 12.1x45 befo... |
| CVE-2013-4397 | — | — | 5.5% | Oct 17, 2013 | Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to caus... |
| CVE-2013-4371 | — | — | 0.4% | Oct 17, 2013 | Use-after-free vulnerability in the libxl_list_cpupool function in the libxl toolstack library in Xen 4.2.x and 4.3.x, w... |
| CVE-2013-4370 | — | — | 0.4% | Oct 17, 2013 | The ocaml binding for the xc_vcpu_getaffinity function in Xen 4.2.x and 4.3.x frees certain memory that may still be int... |
| CVE-2013-4369 | — | — | 0.3% | Oct 17, 2013 | The xlu_vif_parse_rate function in the libxlu library in Xen 4.2.x and 4.3.x allows local users to cause a denial of ser... |
| CVE-2013-4368 | — | — | 0.4% | Oct 17, 2013 | The outs instruction emulation in Xen 3.1.x, 4.2.x, 4.3.x, and earlier, when using FS: or GS: segment override, uses an ... |
| CVE-2013-4365 | — | — | 13.1% | Oct 17, 2013 | Heap-based buffer overflow in the fcgid_header_bucket_read function in fcgid_bucket.c in the mod_fcgid module before 2.3... |
| CVE-2013-4363 | — | — | 1.7% | Oct 17, 2013 | Algorithmic complexity vulnerability in Gem::Version::ANCHORED_VERSION_PATTERN in lib/rubygems/version.rb in RubyGems be... |
| CVE-2013-4287 | — | — | 3.3% | Oct 17, 2013 | Algorithmic complexity vulnerability in Gem::Version::VERSION_PATTERN in lib/rubygems/version.rb in RubyGems before 1.8.... |
| CVE-2013-2254 | — | — | 4.1% | Oct 17, 2013 | The deepGetOrCreateNode function in impl/operations/AbstractCreateOperation.java in org.apache.sling.servlets.post.bundl... |
| CVE-2013-2190 | — | — | 0.5% | Oct 17, 2013 | The translate_hierarchy_event function in x11/clutter-device-manager-xi2.c in Clutter, when resuming the system, does no... |
| CVE-2013-5376 | — | — | 0.9% | Oct 17, 2013 | Cross-site scripting (XSS) vulnerability in IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.2.0 allows remote auth... |
| CVE-2013-4389 | — | — | 3.1% | Oct 17, 2013 | Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ru... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now