2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5303 | — | — | 1.9% | Aug 16, 2013 | Unspecified vulnerability in the Store Locator (locator) extension before 3.1.5 for TYPO3 has unknown impact and remote ... |
| CVE-2013-5302 | — | — | 1.4% | Aug 16, 2013 | SQL injection vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers t... |
| CVE-2013-5301 | — | — | 3.4% | Aug 16, 2013 | Directory traversal vulnerability in help.php in Trustport Webfilter 5.5.0.2232 allows remote attackers to read arbitrar... |
| CVE-2013-4114 | — | — | 2.4% | Aug 16, 2013 | The automatic update request in Nagstamont before 0.9.10 uses a cleartext base64 format for transmission of a username a... |
| CVE-2013-3319 | — | — | 20.9% | Aug 16, 2013 | The GetComputerSystem method in the HostControl service in SAP Netweaver 7.03 allows remote attackers to obtain sensitiv... |
| CVE-2013-4213 | — | — | 2.5% | Aug 16, 2013 | Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by the EJB client API,... |
| CVE-2013-4128 | — | — | 2.4% | Aug 16, 2013 | Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by remote-naming, whic... |
| CVE-2013-5097 | — | — | 1.3% | Aug 16, 2013 | Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly restrict a... |
| CVE-2013-5096 | — | — | 1.1% | Aug 16, 2013 | Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly implement ... |
| CVE-2013-5095 | — | — | 1.4% | Aug 16, 2013 | Cross-site scripting (XSS) vulnerability in the web-based interface in Juniper Junos Space before 13.1R1.6, as used on t... |
| CVE-2013-4698 | — | — | 1.0% | Aug 16, 2013 | Cybozu Mailwise 5.0.4 and 5.0.5 allows remote authenticated users to obtain sensitive e-mail content intended for differ... |
| CVE-2013-4007 | — | — | 0.8% | Aug 16, 2013 | Cross-site scripting (XSS) vulnerability in adv_sw.php in the Advanced Management Module (AMM) with firmware BBET before... |
| CVE-2013-3040 | — | — | 1.4% | Aug 16, 2013 | IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating w... |
| CVE-2013-3034 | — | — | 0.9% | Aug 16, 2013 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 ... |
| CVE-2013-0587 | — | — | 1.1% | Aug 16, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Portal before 8.0.0.1 CF07 allow remote attackers t... |
| CVE-2013-0585 | — | — | 0.8% | Aug 16, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP... |
| CVE-2013-5300 | — | — | 1.8% | Aug 15, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) be... |
| CVE-2013-2132 | — | — | 2.6% | Aug 15, 2013 | bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as used in MongoDB, allows context-dependent... |
| CVE-2013-2023 | — | — | 2.5% | Aug 15, 2013 | Cross-site scripting (XSS) vulnerability in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer ... |
| CVE-2013-1942 | — | — | 5.5% | Aug 15, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) ... |
| CVE-2013-2250 | — | — | 12.1% | Aug 15, 2013 | Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and 12.04.01 allows r... |
| CVE-2013-2137 | — | — | 7.7% | Aug 15, 2013 | Cross-site scripting (XSS) vulnerability in the "View Log" screen in the Webtools application in Apache Open For Busines... |
| CVE-2013-5121 | — | — | 1.2% | Aug 14, 2013 | SQL injection vulnerability in PHPFox before 3.6.0 (build6) allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2013-5120 | — | — | 1.2% | Aug 14, 2013 | SQL injection vulnerability in PHPFox before 3.6.0 (build4) allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2013-2127 | — | — | 3.3% | Aug 14, 2013 | Buffer overflow in the exposure correction code in LibRaw before 0.15.1 allows context-dependent attackers to cause a de... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now