2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-5216——Directory traversal vulnerability in logreader/uploadreader.jsp in CapaSystems Performance Guard before 6.2.102 allows r...
CVE-2013-4329——The xenlight library (libxl) in Xen 4.0.x through 4.2.x, when IOMMU is disabled, provides access to a busmastering-capab...
CVE-2013-2940——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2939——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2938——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2937——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2936——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2935——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2934——Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 does not properly restrict access to we...
CVE-2013-2933——Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknow...
CVE-2013-2601——The NDVM in Citrix XenClient XT before 2.1.3 and 3.x before 3.1.4 allows remote attackers to execute arbitrary commands ...
CVE-2013-5724——Phpbb3 before 3.0.11-4 for Debian GNU/Linux uses world-writable permissions for cache files, which allows local users to...
CVE-2013-5723——SQL injection vulnerability in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecif...
CVE-2013-4308——Cross-site scripting (XSS) vulnerability in pages/TalkpageHistoryView.php in the LiquidThreads (LQT) extension 2.x and p...
CVE-2013-4307——Multiple cross-site scripting (XSS) vulnerabilities in repo/includes/EntityView.php in the Wikibase extension for MediaW...
CVE-2013-5739——The default configuration of WordPress before 3.6.1 does not prevent uploads of .swf and .exe files, which might make it...
CVE-2013-5738——The get_allowed_mime_types function in wp-includes/functions.php in WordPress before 3.6.1 does not require the unfilter...
CVE-2013-4340——wp-admin/includes/post.php in WordPress before 3.6.1 allows remote authenticated users to spoof the authorship of a post...
CVE-2013-4339——WordPress before 3.6.1 does not properly validate URLs before use in an HTTP redirect, which allows remote attackers to ...
CVE-2013-4338——wp-includes/functions.php in WordPress before 3.6.1 does not properly determine whether data has been serialized, which ...
CVE-2013-5488——Cisco Common Services, as used in Cisco Prime LAN Management Solution (LMS), Cisco Security Manager, Cisco Unified Servi...
CVE-2013-3446——Open redirect vulnerability in the login page in Cisco Digital Media Manager (DMM) allows remote attackers to redirect u...
CVE-2013-3039——IBM Rational Requirements Composer before 4.0.4 does not properly perform authentication, which has unspecified impact a...
CVE-2013-3038——Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to dis...
CVE-2013-3037——Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for local users to gain pri...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now