2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3368 | — | — | 0.3% | Aug 23, 2013 | bin/rt in Request Tracker (RT) 3.8.x before 3.8.17 and 4.0.x before 4.0.13 allows local users to overwrite arbitrary fil... |
| CVE-2013-2196 | — | — | 0.4% | Aug 23, 2013 | Multiple unspecified vulnerabilities in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrator... |
| CVE-2013-2195 | — | — | 0.4% | Aug 23, 2013 | The Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an un... |
| CVE-2013-2194 | — | — | 0.4% | Aug 23, 2013 | Multiple integer overflows in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with cer... |
| CVE-2013-1909 | — | — | 1.6% | Aug 23, 2013 | The Python client in Apache Qpid before 2.2 does not verify that the server hostname matches a domain name in the subjec... |
| CVE-2013-1435 | — | — | 2.4% | Aug 23, 2013 | (1) snmp.php and (2) rrd.php in Cacti before 0.8.8b allows remote attackers to execute arbitrary commands via shell meta... |
| CVE-2013-1434 | — | — | 1.7% | Aug 23, 2013 | Multiple SQL injection vulnerabilities in (1) api_poller.php and (2) utility.php in Cacti before 0.8.8b allow remote att... |
| CVE-2013-5570 | — | — | 1.2% | Aug 23, 2013 | Cross-site scripting (XSS) vulnerability in the Javascript and CSS Optimizer extension before 1.1.14 for TYPO3 allows re... |
| CVE-2013-5569 | — | — | 1.2% | Aug 23, 2013 | SQL injection vulnerability in the Slideshare extension 0.1.0 for TYPO3 allows remote attackers to execute arbitrary SQL... |
| CVE-2013-3453 | — | — | 1.9% | Aug 22, 2013 | Memory leak in Cisco Unified Communications Manager IM and Presence Service before 8.6(5)SU1 and 9.x before 9.1(2), and ... |
| CVE-2013-2979 | — | — | 1.4% | Aug 22, 2013 | Directory traversal vulnerability in IBM Optim Performance Manager 4.1.1 and IBM InfoSphere Optim Performance Manager 5.... |
| CVE-2013-2801 | — | — | 1.4% | Aug 22, 2013 | The OSIsoft PI Interface for IEEE C37.118 before 1.0.6.158 allows remote attackers to cause a denial of service (instanc... |
| CVE-2013-2800 | — | — | 1.4% | Aug 22, 2013 | The OSIsoft PI Interface for IEEE C37.118 before 1.0.6.158 allows remote attackers to cause a denial of service (memory ... |
| CVE-2013-2789 | — | — | 1.8% | Aug 22, 2013 | The Kepware DNP Master Driver for the KEPServerEX Communications Platform before 5.12.140.0 allows remote attackers to c... |
| CVE-2013-2299 | — | — | 1.5% | Aug 22, 2013 | Cross-site scripting (XSS) vulnerability in Advantech WebAccess (formerly BroadWin WebAccess) before 7.1 2013.05.30 allo... |
| CVE-2013-4005 | — | — | 1.4% | Aug 21, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2013-4004 | — | — | 1.4% | Aug 21, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 8.0 bef... |
| CVE-2013-3029 | — | — | 1.0% | Aug 21, 2013 | Cross-site request forgery (CSRF) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) ... |
| CVE-2013-2976 | — | — | 0.4% | Aug 21, 2013 | The Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 befor... |
| CVE-2013-2967 | — | — | 2.1% | Aug 21, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2013-2802 | — | — | 3.9% | Aug 21, 2013 | The universal protocol implementation in Sixnet UDR before 2.0 and RTU firmware before 4.8 allows remote attackers to ex... |
| CVE-2013-0597 | — | — | 1.4% | Aug 21, 2013 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.29, 8.0 before 8.0.0... |
| CVE-2013-4701 | — | — | 3.0% | Aug 21, 2013 | Auth/Yadis/XML.php in PHP OpenID Library 2.2.2 and earlier allows remote attackers to read arbitrary files, send HTTP re... |
| CVE-2013-4700 | — | — | 0.5% | Aug 21, 2013 | The Yahoo! Japan Shopping application 1.4 and earlier for Android does not verify X.509 certificates from SSL servers, w... |
| CVE-2013-4699 | — | — | 0.5% | Aug 21, 2013 | The Yahoo! Japan Yafuoku! application 4.3.0 and earlier for iOS and Android does not verify X.509 certificates from SSL ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now