2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-3464——Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex...
CVE-2013-4806——The OSPF implementation on HP JD9##A routers; HP J4###A, J484#B, J8###A, JD3##A, JE###A, and JF55#A switches; HP 3COM ro...
CVE-2013-3457——Absolute path traversal vulnerability in the web interface in Cisco Finesse allows remote attackers to read directory co...
CVE-2013-3455——Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka B...
CVE-2013-4038——The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) on IBM BladeCe...
CVE-2013-4037——The RAKP protocol support in the Intelligent Platform Management Interface (IPMI) implementation in Integrated Managemen...
CVE-2013-4031——The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) and Integrated...
CVE-2013-2798——Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow physically proximat...
CVE-2013-2796——Schneider Electric Vijeo Citect 7.20 and earlier, CitectSCADA 7.20 and earlier, and PowerLogic SCADA 7.20 and earlier al...
CVE-2013-2792——Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow remote attackers to...
CVE-2013-0494——IBM Sterling B2B Integrator 5.0 and 5.1 allows remote attackers to cause a denial of service (memory and CPU consumption...
CVE-2013-0492——Cross-site scripting (XSS) vulnerability in IBM Informix Open Admin Tool (OAT) 2.x and 3.x before 3.11.1 allows remote a...
CVE-2013-5100——Cross-site scripting (XSS) vulnerability in the Static Methods since 2007 (div2007) extension before 0.10.2 for TYPO3 al...
CVE-2013-4115——Buffer overflow in the idnsALookup function in dns_internal.cc in Squid 3.2 through 3.2.11 and 3.3 through 3.3.6 allows ...
CVE-2013-5099——Cross-site scripting (XSS) vulnerability in article.php in Anchor CMS 0.9.1, when comments are enabled, allows remote at...
CVE-2013-5098——Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress ...
CVE-2013-4789——SQL injection vulnerability in modules/rss/rss.php in Cotonti before 0.9.14 allows remote attackers to execute arbitrary...
CVE-2013-4759——Multiple cross-site scripting (XSS) vulnerabilities in the Magnolia Form module 1.x before 1.4.7 and 2.x before 2.0.2 fo...
CVE-2013-4742——Buffer overflow in NetWin SurgeFTP before 23d2 allows remote attackers to cause a denial of service (crash) or possibly ...
CVE-2013-4625——Cross-site scripting (XSS) vulnerability in files/installer.cleanup.php in the Duplicator plugin before 0.4.5 for WordPr...
CVE-2013-4620——Cross-site scripting (XSS) vulnerability in interface/main/onotes/office_comments_full.php in OpenEMR 4.1.1 allows remot...
CVE-2013-4619——Multiple SQL injection vulnerabilities in OpenEMR 4.1.1 allow remote authenticated users to execute arbitrary SQL comman...
CVE-2013-4600——Multiple cross-site scripting (XSS) vulnerabilities in Alkacon OpenCms before 8.5.2 allow remote attackers to inject arb...
CVE-2013-4147——Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attacker...
CVE-2013-3262——Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now