2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4828 | — | — | 2.7% | Oct 4, 2013 | HP LaserJet M4555, M525, and M725; LaserJet flow MFP M525c; LaserJet Enterprise color flow MFP M575c; Color LaserJet CM4... |
| CVE-2013-4711 | — | — | 1.8% | Oct 4, 2013 | Cross-site scripting (XSS) vulnerability in Accela BizSearch 3.2 on Linux and Solaris allows remote attackers to inject ... |
| CVE-2013-2964 | — | — | 0.4% | Oct 4, 2013 | Buffer overflow in dsmtca in IBM Tivoli Storage Manager (TSM) through 5.5.4.0, 6.1.0 through 6.1.5.4, 6.2.0 through 6.2.... |
| CVE-2013-3248 | — | — | 18.6% | Oct 3, 2013 | Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wi... |
| CVE-2013-0742 | — | — | 34.7% | Oct 3, 2013 | Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial... |
| CVE-2013-4327 | — | — | 0.3% | Oct 3, 2013 | systemd does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intend... |
| CVE-2013-4326 | — | — | 0.4% | Oct 3, 2013 | RealtimeKit (aka rtkit) 0.5 does not properly use D-Bus for communication with a polkit authority, which allows local us... |
| CVE-2013-4324 | — | — | 0.4% | Oct 3, 2013 | spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API... |
| CVE-2013-4311 | — | — | 0.4% | Oct 3, 2013 | libvirt 1.0.5.x before 1.0.5.6, 0.10.2.x before 0.10.2.8, and 0.9.12.x before 0.9.12.2 allows local users to bypass inte... |
| CVE-2013-4288 | — | — | 0.3% | Oct 3, 2013 | Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privilege... |
| CVE-2013-1066 | — | — | 0.4% | Oct 3, 2013 | language-selector 0.110.x before 0.110.1, 0.90.x before 0.90.1, and 0.79.x before 0.79.4 does not properly use D-Bus for... |
| CVE-2013-1065 | — | — | 0.4% | Oct 3, 2013 | backend.py in Jockey before 0.9.7-0ubuntu7.11 does not properly use D-Bus for communication with a polkit authority, whi... |
| CVE-2013-1064 | — | — | 0.4% | Oct 3, 2013 | apt-xapian-index before 0.45ubuntu2.1, 0.44ubuntu7.1, and 0.44ubuntu5.1 does not properly use D-Bus for communication wi... |
| CVE-2013-1063 | — | — | 0.4% | Oct 3, 2013 | usb-creator 0.2.47 before 0.2.47.1, 0.2.40 before 0.2.40ubuntu2, and 0.2.38 before 0.2.38.2 does not properly use D-Bus ... |
| CVE-2013-1062 | — | — | 0.4% | Oct 3, 2013 | ubuntu-system-service 0.2.4 before 0.2.4.1. 0.2.3 before 0.2.3.1, and 0.2.2 before 0.2.2.1 does not properly use D-Bus f... |
| CVE-2013-1061 | — | — | 0.4% | Oct 3, 2013 | dbus/SoftwarePropertiesDBus.py in Software Properties 0.92.17 before 0.92.17.3, 0.92.9 before 0.92.9.3, and 0.82.7 befor... |
| CVE-2013-6010 | — | — | 2.0% | Oct 3, 2013 | Cross-site scripting (XSS) vulnerability in the Comment Attachment plugin 1.0 for WordPress allows remote attackers to i... |
| CVE-2013-5701 | — | — | 1.0% | Oct 3, 2013 | Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebB... |
| CVE-2013-6009 | — | — | 1.0% | Oct 3, 2013 | CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote ... |
| CVE-2013-5690 | — | — | 0.8% | Oct 3, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange AppSuite before 7.2.2 allow remote authenticated use... |
| CVE-2013-5944 | — | — | 2.3% | Oct 3, 2013 | The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmw... |
| CVE-2013-5519 | — | — | 1.2% | Oct 3, 2013 | Cross-site scripting (XSS) vulnerability in the management interface on Cisco Wireless LAN Controller (WLC) devices allo... |
| CVE-2013-3625 | — | — | 0.8% | Oct 3, 2013 | An unspecified DLL file in Baramundi Management Suite 7.5 through 8.9 uses a hardcoded encryption key, which makes it ea... |
| CVE-2013-3624 | — | — | 1.6% | Oct 3, 2013 | The OS deployment feature in Baramundi Management Suite 7.5 through 8.9 stores credentials in cleartext on deployed mach... |
| CVE-2013-3593 | — | — | 2.4% | Oct 3, 2013 | Baramundi Management Suite 7.5 through 8.9 uses cleartext for (1) client-server communication and (2) data storage, whic... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now