2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2178 | — | — | 1.8% | Aug 28, 2013 | The apache-auth.conf, apache-nohome.conf, apache-noscript.conf, and apache-overflows.conf files in Fail2ban before 0.8.1... |
| CVE-2013-2035 | — | — | 0.6% | Aug 28, 2013 | Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when ... |
| CVE-2013-4274 | — | — | 1.0% | Aug 28, 2013 | Cross-site scripting (XSS) vulnerability in the password_policy_admin_view function in password_policy.admin.inc in the ... |
| CVE-2013-4272 | — | — | 1.0% | Aug 28, 2013 | The BOTCHA Spam Prevention module 7.x-1.x before 7.x-1.6, 7.x-2.x before 7.x-2.1, and 7.x-3.x before 7.x-3.3 for Drupal,... |
| CVE-2013-4139 | — | — | 1.6% | Aug 28, 2013 | The Stage File Proxy module 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to cause a denial of service (file... |
| CVE-2013-4138 | — | — | 0.9% | Aug 28, 2013 | Cross-site scripting (XSS) vulnerability in the Hatch theme 7.x-1.x before 7.x-1.4 for Drupal allows remote authenticate... |
| CVE-2013-2247 | — | — | 1.5% | Aug 28, 2013 | The Fast Permissions Administration module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.3 for Drupal does not properl... |
| CVE-2013-2197 | — | — | 1.3% | Aug 28, 2013 | The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal, when using the login delay optio... |
| CVE-2013-2123 | — | — | 1.3% | Aug 28, 2013 | The Node access user reference module 6.x-3.x before 6.x-3.5 and 7.x-3.x before 7.x-3.10 for Drupal does not properly re... |
| CVE-2013-4111 | — | — | 1.0% | Aug 28, 2013 | The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value,... |
| CVE-2013-3495 | — | — | 0.4% | Aug 28, 2013 | The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (k... |
| CVE-2013-2212 | — | — | 0.6% | Aug 28, 2013 | The vmx_set_uc_mode function in Xen 3.3 through 4.3, when disabling caches, allows local HVM guests with access to memor... |
| CVE-2013-2211 | — | — | 0.6% | Aug 28, 2013 | The libxenlight (libxl) toolstack library in Xen 4.0.x, 4.1.x, and 4.2.x uses weak permissions for xenstore keys for par... |
| CVE-2013-2176 | — | — | 0.5% | Aug 28, 2013 | Unquoted Windows search path vulnerability in the Red Hat Enterprise Virtualization Application Provisioning Tool (RHEV-... |
| CVE-2013-2077 | — | — | 0.5% | Aug 28, 2013 | Xen 4.0.x, 4.1.x, and 4.2.x does not properly restrict the contents of a XRSTOR, which allows local PV guest users to ca... |
| CVE-2013-2076 | — | — | 0.5% | Aug 28, 2013 | Xen 4.0.x, 4.1.x, and 4.2.x, when running on AMD64 processors, only save/restore the FOP, FIP, and FDP x87 registers in ... |
| CVE-2013-2072 | — | — | 1.1% | Aug 28, 2013 | Buffer overflow in the Python bindings for the xc_vcpu_setaffinity call in Xen 4.0.x, 4.1.x, and 4.2.x allows local admi... |
| CVE-2013-1432 | — | — | 0.6% | Aug 28, 2013 | Xen 4.1.x and 4.2.x, when the XSA-45 patch is in place, does not properly maintain references on pages stored for deferr... |
| CVE-2013-4039 | — | — | 1.9% | Aug 28, 2013 | IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive ... |
| CVE-2013-4033 | — | — | 1.7% | Aug 28, 2013 | IBM DB2 and DB2 Connect 9.7 through FP8, 9.8 through FP5, 10.1 through FP2, and 10.5 through FP1 allow remote authentica... |
| CVE-2013-3582 | — | — | 2.6% | Aug 28, 2013 | Buffer overflow in Dell BIOS on Dell Latitude D###, E####, XT2, and Z600 devices, and Dell Precision M#### devices, allo... |
| CVE-2013-3271 | — | — | 1.3% | Aug 28, 2013 | EMC RSA Authentication Agent for PAM 7.0 before 7.0.2.1 enforces the maximum number of login attempts within the PAM-ena... |
| CVE-2013-3077 | — | — | 0.4% | Aug 28, 2013 | Multiple integer overflows in the IP_MSFILTER and IPV6_MSFILTER features in (1) sys/netinet/in_mcast.c and (2) sys/netin... |
| CVE-2013-2353 | — | — | 2.5% | Aug 28, 2013 | Unspecified vulnerability in HP StoreOnce D2D Backup System 1.x before 1.2.19 and 2.x before 2.3.0 allows remote attacke... |
| CVE-2013-3598 | — | — | 2.2% | Aug 28, 2013 | Directory traversal vulnerability in servlet/CreateTemplateServlet in SearchBlox before 7.5 build 1 allows remote attack... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now