2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-5714Multiple cross-site scripting (XSS) vulnerabilities in ls/htmlchat.php in the VideoWhisper Live Streaming Integration pl...
CVE-2013-5642The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.x before 1.8.23.1, 10.x before 10.12.3, and 11....
CVE-2013-5641The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.17.x through 1.8.22.x, 1.8.23.x before 1.8.23.1...
CVE-2013-4900Directory traversal vulnerability in DeWeS web server 0.4.2 and possibly earlier, as used in Twilight CMS, allows remote...
CVE-2013-4899Cross-site scripting (XSS) vulnerability in Twilight CMS 5.17 and possibly earlier allows remote attackers to inject arb...
CVE-2013-2992The Search component in IBM WebSphere Commerce 7.0 FP4 through FP6, in certain search-term association configurations, a...
CVE-2013-2803ProSoft RadioLinx ControlScape before 6.00.040 uses a deficient PRNG algorithm and seeding strategy for passphrases, whi...
CVE-2013-2794Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.1...
CVE-2013-2793Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.1...
CVE-2013-2791MatrikonOPC SCADA DNP3 OPC Server 1.2.0 allows remote attackers to cause a denial of service (master-station daemon cras...
CVE-2013-4062IBM Rational Policy Tester 8.5 before 8.5.0.5 does not verify X.509 certificates from SSL servers, which allows man-in-t...
CVE-2013-4061IBM Rational Policy Tester 8.5 before 8.5.0.5 does not properly check authorization for changes to the set of authentica...
CVE-2013-3031A SQL stored procedure in the Universal Cache component in IBM solidDB 6.0.x before 6.0.1070, 6.3.x before 6.3.0.56, 6.5...
CVE-2013-3596AdvancePro Advanceware allows remote authenticated users to obtain sensitive information about arbitrary customers' orde...
CVE-2013-2997IBM Security AppScan Enterprise before 8.7 does not invalidate the session context upon a logout action, which allows re...
CVE-2013-0531The SSL implementation in IBM Security AppScan Enterprise before 8.7.0.1 enables cipher suites with weak encryption algo...
CVE-2013-5483Cross-site scripting (XSS) vulnerability in bookmarklet.jsp in Cisco SocialMiner allows remote attackers to inject arbit...
CVE-2013-5132Apple AirPort Base Station Firmware before 7.6.4 does not properly handle incorrect frame lengths, which allows remote a...
CVE-2013-3609The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8S...
CVE-2013-3608The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8S...
CVE-2013-3607Multiple stack-based buffer overflows in the web interface in the Intelligent Platform Management Interface (IPMI) imple...
CVE-2013-3458Cisco Adaptive Security Appliances (ASA) devices, when SMP is used, do not properly process X.509 certificates, which al...
CVE-2013-5708Coursemill Learning Management System (LMS) 6.8 constructs secret tokens based on time values, which makes it easier for...
CVE-2013-5707Multiple cross-site scripting (XSS) vulnerabilities in Coursemill Learning Management System (LMS) 6.8 allow remote atta...
CVE-2013-5706Multiple cross-site scripting (XSS) vulnerabilities in Coursemill Learning Management System (LMS) 6.8 allow remote atta...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now