2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4113 | — | — | 5.2% | Jul 13, 2013 | ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a de... |
| CVE-2013-3692 | — | — | 0.4% | Jul 13, 2013 | BlackBerry 10 OS before 10.0.10.648 on BlackBerry Z10 smartphones uses weak permissions for a BlackBerry Protect object,... |
| CVE-2013-2351 | — | — | 3.7% | Jul 13, 2013 | Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.00, 9.1x, and 9.2x allows remote attackers to obtain sen... |
| CVE-2013-3424 | — | — | 1.2% | Jul 12, 2013 | Cross-site request forgery (CSRF) vulnerability in Administration and View pages in Cisco Secure Access Control System (... |
| CVE-2013-3423 | — | — | 0.9% | Jul 12, 2013 | Cross-site scripting (XSS) vulnerability in the web interface in Cisco Secure Access Control System (ACS) allows remote ... |
| CVE-2013-3422 | — | — | 0.9% | Jul 12, 2013 | Cross-site scripting (XSS) vulnerability in Administration pages in Cisco Secure Access Control System (ACS) allows remo... |
| CVE-2013-3421 | — | — | 0.9% | Jul 12, 2013 | Cross-site scripting (XSS) vulnerability in the Help index page in Cisco Secure Access Control System (ACS) allows remot... |
| CVE-2013-2704 | — | — | 1.0% | Jul 12, 2013 | Cross-site request forgery (CSRF) vulnerability in the Dropdown Menu Widget plugin 1.9.1 for WordPress allows remote att... |
| CVE-2013-3655 | — | — | 1.9% | Jul 12, 2013 | The Sharp AQUOS PhotoPlayer HN-PP150 with firmware before 1.04.00.04 allows remote attackers to cause a denial of servic... |
| CVE-2013-2688 | — | — | 6.7% | Jul 12, 2013 | Buffer overflow in phrelay in BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 in the QNX Software Development Platform al... |
| CVE-2013-2687 | — | — | 8.2% | Jul 12, 2013 | Stack-based buffer overflow in the bpe_decompress function in (1) BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 and (2)... |
| CVE-2013-3419 | — | — | 0.9% | Jul 11, 2013 | Cross-site scripting (XSS) vulnerability in Cisco Unified MeetingPlace Web Conferencing allows remote attackers to injec... |
| CVE-2013-3418 | — | — | 1.1% | Jul 11, 2013 | Cisco Unified Communications Domain Manager does not properly allocate memory for GET and POST requests, which allows re... |
| CVE-2013-1777 | — | — | 9.8% | Jul 11, 2013 | The JMX Remoting functionality in Apache Geronimo 3.x before 3.0.1, as used in IBM WebSphere Application Server (WAS) Co... |
| CVE-2013-1768 | — | — | 9.5% | Jul 11, 2013 | The BrokerFactory functionality in Apache OpenJPA 1.x before 1.2.3 and 2.x before 2.2.2 creates local executable JSP fil... |
| CVE-2013-4690 | — | — | 2.1% | Jul 11, 2013 | Juniper Junos 10.4 before 10.4S13, 11.4 before 11.4R7-S1, 12.1 before 12.1R5-S3, 12.1X44 before 12.1X44-D20, and 12.1X45... |
| CVE-2013-4688 | — | — | 1.9% | Jul 11, 2013 | flowd in Juniper Junos 10.4 before 10.4R11 on SRX devices, when the MSRPC Application Layer Gateway (ALG) is enabled, al... |
| CVE-2013-4687 | — | — | 2.6% | Jul 11, 2013 | flowd in Juniper Junos 10.4 before 10.4S14, 11.2 and 11.4 before 11.4R6-S2, and 12.1 before 12.1R6 on SRX devices, when ... |
| CVE-2013-4686 | — | — | 2.3% | Jul 11, 2013 | The kernel in Juniper Junos 10.4 before 10.4R14, 11.4 before 11.4R8, 11.4X27 before 11.4X27.43, 12.1 before 12.1R6, 12.1... |
| CVE-2013-4685 | — | — | 7.6% | Jul 11, 2013 | Buffer overflow in flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7, 12.1 before 12.1R6, and 12.1X44 befor... |
| CVE-2013-4684 | — | — | 2.8% | Jul 11, 2013 | flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R8, 12.1 before 12.1R7, and 12.1X44 before 12.1X44-D15 on SR... |
| CVE-2013-2786 | — | — | 0.3% | Jul 10, 2013 | Alstom Grid MiCOM S1 Agile before 1.0.3 and Alstom Grid MiCOM S1 Studio use weak permissions for the MiCOM S1 %PROGRAMFI... |
| CVE-2013-2784 | — | — | 4.0% | Jul 10, 2013 | Triangle Research International (aka Tri) Nano-10 PLC devices with firmware before r81 use an incorrect algorithm for bo... |
| CVE-2013-2352 | — | — | 3.9% | Jul 10, 2013 | LeftHand OS (aka SAN iQ) 10.5 and earlier on HP StoreVirtual Storage devices does not provide a mechanism for disabling ... |
| CVE-2013-3579 | — | — | 1.0% | Jul 10, 2013 | The Lookout Mobile Security application before 8.17-8a39d3f for Android allows attackers to cause a denial of service (a... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now