2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-4329The xenlight library (libxl) in Xen 4.0.x through 4.2.x, when IOMMU is disabled, provides access to a busmastering-capab...
CVE-2013-2940Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2939Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2938Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2937Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2936Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2935Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2934Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 does not properly restrict access to we...
CVE-2013-2933Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2601The NDVM in Citrix XenClient XT before 2.1.3 and 3.x before 3.1.4 allows remote attackers to execute arbitrary commands ...
CVE-2013-5724Phpbb3 before 3.0.11-4 for Debian GNU/Linux uses world-writable permissions for cache files, which allows local users to...
CVE-2013-5723SQL injection vulnerability in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecif...
CVE-2013-4308Cross-site scripting (XSS) vulnerability in pages/TalkpageHistoryView.php in the LiquidThreads (LQT) extension 2.x and p...
CVE-2013-4307Multiple cross-site scripting (XSS) vulnerabilities in repo/includes/EntityView.php in the Wikibase extension for MediaW...
CVE-2013-5739The default configuration of WordPress before 3.6.1 does not prevent uploads of .swf and .exe files, which might make it...
CVE-2013-5738The get_allowed_mime_types function in wp-includes/functions.php in WordPress before 3.6.1 does not require the unfilter...
CVE-2013-4340wp-admin/includes/post.php in WordPress before 3.6.1 allows remote authenticated users to spoof the authorship of a post...
CVE-2013-4339WordPress before 3.6.1 does not properly validate URLs before use in an HTTP redirect, which allows remote attackers to ...
CVE-2013-4338wp-includes/functions.php in WordPress before 3.6.1 does not properly determine whether data has been serialized, which ...
CVE-2013-5488Cisco Common Services, as used in Cisco Prime LAN Management Solution (LMS), Cisco Security Manager, Cisco Unified Servi...
CVE-2013-3446Open redirect vulnerability in the login page in Cisco Digital Media Manager (DMM) allows remote attackers to redirect u...
CVE-2013-3039IBM Rational Requirements Composer before 4.0.4 does not properly perform authentication, which has unspecified impact a...
CVE-2013-3038Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to dis...
CVE-2013-3037Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for local users to gain pri...
CVE-2013-3036Open redirect vulnerability in IBM Rational Requirements Composer before 4.0.4 allows remote authenticated users to redi...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now