2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3472 | — | — | 0.7% | Aug 29, 2013 | Cross-site request forgery (CSRF) vulnerability in the Enterprise License Manager (ELM) in Cisco Unified Communications ... |
| CVE-2013-3471 | — | — | 1.4% | Aug 29, 2013 | The captive portal application in Cisco Identity Services Engine (ISE) allows remote attackers to discover cleartext use... |
| CVE-2013-3468 | — | — | 3.2% | Aug 29, 2013 | The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) ... |
| CVE-2013-3466 | — | — | 5.1% | Aug 29, 2013 | The EAP-FAST authentication module in Cisco Secure Access Control Server (ACS) 4.x before 4.2.1.15.11, when a RADIUS ser... |
| CVE-2013-5018 | — | — | 3.0% | Aug 28, 2013 | The is_asn1 function in strongSwan 4.1.11 through 5.0.4 does not properly validate the return value of the asn1_length f... |
| CVE-2013-2178 | — | — | 1.8% | Aug 28, 2013 | The apache-auth.conf, apache-nohome.conf, apache-noscript.conf, and apache-overflows.conf files in Fail2ban before 0.8.1... |
| CVE-2013-2035 | — | — | 0.6% | Aug 28, 2013 | Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when ... |
| CVE-2013-4274 | — | — | 1.0% | Aug 28, 2013 | Cross-site scripting (XSS) vulnerability in the password_policy_admin_view function in password_policy.admin.inc in the ... |
| CVE-2013-4272 | — | — | 1.0% | Aug 28, 2013 | The BOTCHA Spam Prevention module 7.x-1.x before 7.x-1.6, 7.x-2.x before 7.x-2.1, and 7.x-3.x before 7.x-3.3 for Drupal,... |
| CVE-2013-4139 | — | — | 1.6% | Aug 28, 2013 | The Stage File Proxy module 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to cause a denial of service (file... |
| CVE-2013-4138 | — | — | 0.9% | Aug 28, 2013 | Cross-site scripting (XSS) vulnerability in the Hatch theme 7.x-1.x before 7.x-1.4 for Drupal allows remote authenticate... |
| CVE-2013-2247 | — | — | 1.5% | Aug 28, 2013 | The Fast Permissions Administration module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.3 for Drupal does not properl... |
| CVE-2013-2197 | — | — | 1.3% | Aug 28, 2013 | The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal, when using the login delay optio... |
| CVE-2013-2123 | — | — | 1.3% | Aug 28, 2013 | The Node access user reference module 6.x-3.x before 6.x-3.5 and 7.x-3.x before 7.x-3.10 for Drupal does not properly re... |
| CVE-2013-4111 | — | — | 1.0% | Aug 28, 2013 | The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value,... |
| CVE-2013-3495 | — | — | 0.4% | Aug 28, 2013 | The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (k... |
| CVE-2013-2212 | — | — | 0.6% | Aug 28, 2013 | The vmx_set_uc_mode function in Xen 3.3 through 4.3, when disabling caches, allows local HVM guests with access to memor... |
| CVE-2013-2211 | — | — | 0.6% | Aug 28, 2013 | The libxenlight (libxl) toolstack library in Xen 4.0.x, 4.1.x, and 4.2.x uses weak permissions for xenstore keys for par... |
| CVE-2013-2176 | — | — | 0.5% | Aug 28, 2013 | Unquoted Windows search path vulnerability in the Red Hat Enterprise Virtualization Application Provisioning Tool (RHEV-... |
| CVE-2013-2077 | — | — | 0.5% | Aug 28, 2013 | Xen 4.0.x, 4.1.x, and 4.2.x does not properly restrict the contents of a XRSTOR, which allows local PV guest users to ca... |
| CVE-2013-2076 | — | — | 0.5% | Aug 28, 2013 | Xen 4.0.x, 4.1.x, and 4.2.x, when running on AMD64 processors, only save/restore the FOP, FIP, and FDP x87 registers in ... |
| CVE-2013-2072 | — | — | 1.1% | Aug 28, 2013 | Buffer overflow in the Python bindings for the xc_vcpu_setaffinity call in Xen 4.0.x, 4.1.x, and 4.2.x allows local admi... |
| CVE-2013-1432 | — | — | 0.6% | Aug 28, 2013 | Xen 4.1.x and 4.2.x, when the XSA-45 patch is in place, does not properly maintain references on pages stored for deferr... |
| CVE-2013-4039 | — | — | 1.9% | Aug 28, 2013 | IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive ... |
| CVE-2013-4033 | — | — | 1.7% | Aug 28, 2013 | IBM DB2 and DB2 Connect 9.7 through FP8, 9.8 through FP5, 10.1 through FP2, and 10.5 through FP1 allow remote authentica... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now