2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-2499HIGH7.5SimpleHRM 2.3 and earlier could allow remote attackers to bypass the authentication process in 'user_manager.php' via sp...
CVE-2013-2474HIGH7.5Directory traversal vulnerability in AWS XMS 2.5 allows remote attackers to view arbitrary files via the 'what' paramete...
CVE-2013-2267HIGH7.2PHP Code Injection vulnerability in FUDforum Bulletin Board Software 3.0.4 could allow remote attackers to execute arbit...
CVE-2013-7390CRITICAL9.8Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before buil...
CVE-2013-4770MEDIUM6.1Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attacke...
CVE-2013-4441CRITICAL9.8The Phonemes mode in Pwgen 2.06 generates predictable passwords, which makes it easier for context-dependent attackers t...
CVE-2013-6056HIGH7.5OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability
CVE-2013-5659HIGH7.5Wiz 5.0.3 has a user mode write access violation
CVE-2013-4462CRITICAL9.1WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability
CVE-2013-3493CRITICAL9.8XnView 2.03 has an integer overflow vulnerability
CVE-2013-3492CRITICAL9.8XnView 2.03 has a stack-based buffer overflow vulnerability
CVE-2013-3486CRITICAL9.6IrfanView FlashPix Plugin 4.3.4 0 has an Integer Overflow Vulnerability
CVE-2013-0286MEDIUM5.4Pinboard 1.0.6 theme for Wordpress has XSS.
CVE-2013-1744CRITICAL9.8IRIS citations management tool through 1.3 allows remote attackers to execute arbitrary commands.
CVE-2013-1598HIGH8.8A Command Injection vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via the system.ntp parameter to th...
CVE-2013-1597MEDIUM6.5A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET requ...
CVE-2013-1596MEDIUM5.3An Authentication Bypass Vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via specially crafted RTSP pac...
CVE-2013-1595CRITICAL9.8A Buffer Overflow vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via a specially crafted packet in the...
CVE-2013-1594HIGH7.5An Information Disclosure vulnerability exists via a GET request in Vivotek PT7135 IP Camera 0300a and 0400a due to wire...
CVE-2013-4333CRITICAL9.1OpenPNE 3 versions 3.8.7, 3.6.11, 3.4.21.1, 3.2.7.6, 3.0.8.5 has an External Entity Injection Vulnerability
CVE-2013-3960CRITICAL9.9Easytime Studio Easy File Manager 1.1 has a HTTP request security bypass
CVE-2013-1593HIGH7.5A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7....
CVE-2013-1592CRITICAL9.8A Buffer Overflow vulnerability exists in the Message Server service _MsJ2EE_AddStatistics() function when sending speci...
CVE-2013-6792CRITICAL9.8Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
CVE-2013-6785MEDIUM4.3Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attacker...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now