2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-3687AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models use cl...
CVE-2013-3686cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote attackers to obtain the admin...
CVE-2013-2581cgi-bin/firmwareupgrade in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models be...
CVE-2013-2580Unrestricted file upload vulnerability in cgi-bin/uploadfile in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-...
CVE-2013-2579TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.1...
CVE-2013-2578cgi-bin/admin/servetest in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models be...
CVE-2013-5533The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell c...
CVE-2013-5532Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of se...
CVE-2013-5528Directory traversal vulnerability in the Tomcat administrative web interface in Cisco Unified Communications Manager all...
CVE-2013-5527The OSPF functionality in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (device reload) via ...
CVE-2013-5526Cisco 9900 fourth-generation IP phones do not properly perform SDP negotiation, which allows remote attackers to cause a...
CVE-2013-5525SQL injection vulnerability in the web framework in Cisco Identity Services Engine (ISE) 1.2 and earlier allows remote a...
CVE-2013-5524Cross-site scripting (XSS) vulnerability in the troubleshooting page in Cisco Identity Services Engine (ISE) 1.2 and ear...
CVE-2013-5523The Sponsor Portal in Cisco Identity Services Engine (ISE) 1.2 and earlier does not properly restrict use of IFRAME elem...
CVE-2013-5499The remember feature in the DHCP server in Cisco IOS allows remote attackers to cause a denial of service (device reload...
CVE-2013-5008The agent and task-agent components in Symantec Management Platform 7.0 and 7.1 before 7.1 SP2 Mp1.1v7 rollup, as used i...
CVE-2013-4396Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X....
CVE-2013-4387net/ipv6/ip6_output.c in the Linux kernel through 3.11.4 does not properly determine the need for UDP Fragmentation Offl...
CVE-2013-4345Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easie...
CVE-2013-3409The portal in Cisco Prime Central for Hosted Collaboration Solution (HCS) places cleartext credentials in temporary file...
CVE-2013-0580Cross-site request forgery (CSRF) vulnerability in the Optim E-Business Console in IBM Data Growth Solution for Oracle E...
CVE-2013-0579The Optim E-Business Console in IBM Data Growth Solution for Oracle E-business Suite 6.0 through 9.1 allows remote attac...
CVE-2013-0577The Optim E-Business Console in IBM Data Growth Solution for Oracle E-business Suite 6.0 through 9.1 allows remote authe...
CVE-2013-4767Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors.
CVE-2013-4351GnuPG 1.4.x, 2.0.x, and 2.1.x treats a key flags subpacket with all bits cleared (no usage permitted) as if it has all b...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now