2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-1866MEDIUM6.1OpenSC OpenSC.tokend has an Arbitrary File Creation/Overwrite Vulnerability
CVE-2013-1631MEDIUM5.3Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action
CVE-2013-1352HIGH7.5Verax NMS prior to 2.1.0 uses an encryption key that is hardcoded in a JAR archive.
CVE-2013-1351MEDIUM5.9Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password.
CVE-2013-1350CRITICAL9.1Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities
CVE-2013-0739MEDIUM6.1Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script.
CVE-2013-0738MEDIUM6.1Chamilo 1.9.4 has Multiple XSS and HTML Injection Vulnerabilities: blog.php and announcements.php.
CVE-2013-0725HIGH7.8ERDAS ER Viewer 13.0 has dwmapi.dll and irml.dll libraries arbitrary code execution vulnerabilities
CVE-2013-0291HIGH7.5NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
CVE-2013-3321HIGH7.5NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to include arbitrary files through specially cra...
CVE-2013-3320MEDIUM6.1Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject...
CVE-2013-3317CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key.
CVE-2013-3316CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass due to the server skipping checks for ...
CVE-2013-2574HIGH7.5An Access vulnerability exists in FOSCAM IP Camera FI8620 due to insufficient access restrictions in the /tmpfs/ and /lo...
CVE-2013-2573CRITICAL9.8A Command Injection vulnerability exists in the ap parameter to the /cgi-bin/mft/wireless_mft.cgi file in TP-Link IP Cam...
CVE-2013-2572HIGH7.5A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 d...
CVE-2013-3215CRITICAL9.8vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in...
CVE-2013-2570CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to t...
CVE-2013-2569HIGH7.5A Security Bypass vulnerability exists in Zavio IP Cameras through 1.6.3 because the RTSP protocol authentication is dis...
CVE-2013-2568CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 via the ap parameter to /cgi-bin/mft/wireless...
CVE-2013-2567HIGH7.5An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through 1.6.03 due to a hardcoded...
CVE-2013-0161MEDIUM5.4Havalite CMS 1.1.7 has a stored XSS vulnerability
CVE-2013-1603MEDIUM5.3An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DC...
CVE-2013-1602HIGH7.5An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP ses...
CVE-2013-3214CRITICAL9.8vtiger CRM 5.4.0 and earlier contain a PHP Code Injection Vulnerability in 'vtigerolservice.php'.

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now