2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-5715——Buffer overflow in Gretech GOM Media Player before 2.2.53.5169 has unspecified impact and attack vectors.
CVE-2013-5714——Multiple cross-site scripting (XSS) vulnerabilities in ls/htmlchat.php in the VideoWhisper Live Streaming Integration pl...
CVE-2013-5642——The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.x before 1.8.23.1, 10.x before 10.12.3, and 11....
CVE-2013-5641——The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.17.x through 1.8.22.x, 1.8.23.x before 1.8.23.1...
CVE-2013-4900——Directory traversal vulnerability in DeWeS web server 0.4.2 and possibly earlier, as used in Twilight CMS, allows remote...
CVE-2013-4899——Cross-site scripting (XSS) vulnerability in Twilight CMS 5.17 and possibly earlier allows remote attackers to inject arb...
CVE-2013-2992——The Search component in IBM WebSphere Commerce 7.0 FP4 through FP6, in certain search-term association configurations, a...
CVE-2013-2803——ProSoft RadioLinx ControlScape before 6.00.040 uses a deficient PRNG algorithm and seeding strategy for passphrases, whi...
CVE-2013-2794——Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.1...
CVE-2013-2793——Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.1...
CVE-2013-2791——MatrikonOPC SCADA DNP3 OPC Server 1.2.0 allows remote attackers to cause a denial of service (master-station daemon cras...
CVE-2013-4062——IBM Rational Policy Tester 8.5 before 8.5.0.5 does not verify X.509 certificates from SSL servers, which allows man-in-t...
CVE-2013-4061——IBM Rational Policy Tester 8.5 before 8.5.0.5 does not properly check authorization for changes to the set of authentica...
CVE-2013-3031——A SQL stored procedure in the Universal Cache component in IBM solidDB 6.0.x before 6.0.1070, 6.3.x before 6.3.0.56, 6.5...
CVE-2013-3596——AdvancePro Advanceware allows remote authenticated users to obtain sensitive information about arbitrary customers' orde...
CVE-2013-2997——IBM Security AppScan Enterprise before 8.7 does not invalidate the session context upon a logout action, which allows re...
CVE-2013-0531——The SSL implementation in IBM Security AppScan Enterprise before 8.7.0.1 enables cipher suites with weak encryption algo...
CVE-2013-5483——Cross-site scripting (XSS) vulnerability in bookmarklet.jsp in Cisco SocialMiner allows remote attackers to inject arbit...
CVE-2013-5132——Apple AirPort Base Station Firmware before 7.6.4 does not properly handle incorrect frame lengths, which allows remote a...
CVE-2013-3609——The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8S...
CVE-2013-3608——The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8S...
CVE-2013-3607——Multiple stack-based buffer overflows in the web interface in the Intelligent Platform Management Interface (IPMI) imple...
CVE-2013-3458——Cisco Adaptive Security Appliances (ASA) devices, when SMP is used, do not properly process X.509 certificates, which al...
CVE-2013-5708——Coursemill Learning Management System (LMS) 6.8 constructs secret tokens based on time values, which makes it easier for...
CVE-2013-5707——Multiple cross-site scripting (XSS) vulnerabilities in Coursemill Learning Management System (LMS) 6.8 allow remote atta...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now