2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3750 | — | — | 0.4% | Jul 17, 2013 | Unspecified vulnerability in Oracle Solaris 11 allows local users to affect confidentiality, integrity, and availability... |
| CVE-2013-3749 | — | — | 2.0% | Jul 17, 2013 | Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.... |
| CVE-2013-3748 | — | — | 2.8% | Jul 17, 2013 | Unspecified vulnerability in Oracle Solaris 11 allows remote attackers to affect availability via vectors related to Dri... |
| CVE-2013-3747 | — | — | 1.1% | Jul 17, 2013 | Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12... |
| CVE-2013-3746 | — | — | 0.4% | Jul 17, 2013 | Unspecified vulnerability in the Solaris Cluster component in Oracle and Sun Systems Products Suite 3.2, 3.3, and 4 prio... |
| CVE-2013-3745 | — | — | 0.4% | Jul 17, 2013 | Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows local users to affect availability via unknown vecto... |
| CVE-2013-0398 | — | — | 2.6% | Jul 17, 2013 | Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows remote attackers to affect confidentiality via unkno... |
| CVE-2013-2135 | — | — | 13.8% | Jul 16, 2013 | Apache Struts 2 before 2.3.14.3 allows remote attackers to execute arbitrary OGNL code via a request with a crafted valu... |
| CVE-2013-2134 | — | — | 70.2% | Jul 16, 2013 | Apache Struts 2 before 2.3.14.3 allows remote attackers to execute arbitrary OGNL code via a request with a crafted acti... |
| CVE-2013-2122 | — | — | 1.6% | Jul 16, 2013 | The Edit Limit module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict access to comments, which allows remo... |
| CVE-2013-1925 | — | — | 1.8% | Jul 16, 2013 | The Chaos Tool Suite (ctools) module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict node access, which all... |
| CVE-2013-1908 | — | — | 2.6% | Jul 16, 2013 | The Commons Wikis module before 7.x-3.1 for Drupal, as used in the Commons module before 7.x-3.1, does not properly rest... |
| CVE-2013-1907 | — | — | 2.9% | Jul 16, 2013 | The Commons Group module before 7.x-3.1 for Drupal, as used in the Commons module before 7.x-3.1, does not properly rest... |
| CVE-2013-0246 | — | — | 2.1% | Jul 16, 2013 | The Image module in Drupal 7.x before 7.19, when a private file system is used, does not properly restrict access to der... |
| CVE-2013-0245 | — | — | 1.9% | Jul 16, 2013 | The printer friendly version functionality in the Book module in Drupal 6.x before 6.28 and 7.x before 7.19 does not pro... |
| CVE-2013-4117 | — | — | 13.0% | Jul 16, 2013 | Cross-site scripting (XSS) vulnerability in includes/CatGridPost.php in the Category Grid View Gallery plugin 2.3.1 for ... |
| CVE-2013-3491 | — | — | 1.1% | Jul 16, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Sharebar plugin 1.2.5 for WordPress allow remote attac... |
| CVE-2013-2188 | — | — | 0.3% | Jul 16, 2013 | A certain Red Hat patch to the do_filp_open function in fs/namei.c in the kernel package before 2.6.32-358.11.1.el6 on R... |
| CVE-2013-1935 | — | — | 0.5% | Jul 16, 2013 | A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linu... |
| CVE-2013-4125 | — | — | 4.7% | Jul 15, 2013 | The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not proper... |
| CVE-2013-3578 | — | — | 2.5% | Jul 15, 2013 | SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remo... |
| CVE-2013-3577 | — | — | 1.3% | Jul 15, 2013 | SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remo... |
| CVE-2013-1087 | — | — | 1.5% | Jul 15, 2013 | Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on W... |
| CVE-2013-3428 | — | — | 0.9% | Jul 15, 2013 | The web interface in Cisco Secure Access Control System (ACS) does not properly suppress error-condition details, which ... |
| CVE-2013-2765 | — | — | 13.7% | Jul 15, 2013 | The ModSecurity module before 2.7.4 for the Apache HTTP Server allows remote attackers to cause a denial of service (NUL... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now