2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-1631MEDIUM5.3Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action
CVE-2013-1352HIGH7.5Verax NMS prior to 2.1.0 uses an encryption key that is hardcoded in a JAR archive.
CVE-2013-1351MEDIUM5.9Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password.
CVE-2013-1350CRITICAL9.1Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities
CVE-2013-0739MEDIUM6.1Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script.
CVE-2013-0738MEDIUM6.1Chamilo 1.9.4 has Multiple XSS and HTML Injection Vulnerabilities: blog.php and announcements.php.
CVE-2013-0725HIGH7.8ERDAS ER Viewer 13.0 has dwmapi.dll and irml.dll libraries arbitrary code execution vulnerabilities
CVE-2013-0291HIGH7.5NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
CVE-2013-3321HIGH7.5NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to include arbitrary files through specially cra...
CVE-2013-3320MEDIUM6.1Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject...
CVE-2013-3317CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key.
CVE-2013-3316CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass due to the server skipping checks for ...
CVE-2013-2574HIGH7.5An Access vulnerability exists in FOSCAM IP Camera FI8620 due to insufficient access restrictions in the /tmpfs/ and /lo...
CVE-2013-2573CRITICAL9.8A Command Injection vulnerability exists in the ap parameter to the /cgi-bin/mft/wireless_mft.cgi file in TP-Link IP Cam...
CVE-2013-2572HIGH7.5A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 d...
CVE-2013-3215CRITICAL9.8vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in...
CVE-2013-2570CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to t...
CVE-2013-2569HIGH7.5A Security Bypass vulnerability exists in Zavio IP Cameras through 1.6.3 because the RTSP protocol authentication is dis...
CVE-2013-2568CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 via the ap parameter to /cgi-bin/mft/wireless...
CVE-2013-2567HIGH7.5An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through 1.6.03 due to a hardcoded...
CVE-2013-0161MEDIUM5.4Havalite CMS 1.1.7 has a stored XSS vulnerability
CVE-2013-1603MEDIUM5.3An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DC...
CVE-2013-1602HIGH7.5An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP ses...
CVE-2013-3214CRITICAL9.8vtiger CRM 5.4.0 and earlier contain a PHP Code Injection Vulnerability in 'vtigerolservice.php'.
CVE-2013-3212HIGH8.1vtiger CRM 5.4.0 and earlier contain local file-include vulnerabilities in 'customerportal.php' which allows remote atta...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now