2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2158 | — | — | 0.7% | Jul 1, 2013 | Cross-site request forgery (CSRF) vulnerability in the Services module 6.x-3.x and 7.x-3.x before 7.x-3.4 for Drupal all... |
| CVE-2013-3653 | — | — | 1.8% | Jun 30, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the RecommendSearch feature in the management screen in LOCKON EC... |
| CVE-2013-3652 | — | — | 5.9% | Jun 30, 2013 | Cross-site scripting (XSS) vulnerability in data/class/pages/products/LC_Page_Products_List.php in LOCKON EC-CUBE 2.11.0... |
| CVE-2013-4735 | — | — | 4.8% | Jun 30, 2013 | The Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2... |
| CVE-2013-4732 | — | — | 3.0% | Jun 30, 2013 | The administrative web server on the Digital Alert Systems DASDEC EAS device through 2.0-2 and the Monroe Electronics R1... |
| CVE-2013-4731 | — | — | 2.9% | Jun 30, 2013 | ajax.cgi in the web interface on the Choice Wireless Green Packet WIXFMR-111 4G WiMax modem allows remote attackers to e... |
| CVE-2013-0137 | — | — | 13.4% | Jun 30, 2013 | The default configuration of the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 On... |
| CVE-2013-3654 | — | — | 1.9% | Jun 30, 2013 | Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 through 2.12.4 allows remote attackers to read arbitrary imag... |
| CVE-2013-3651 | — | — | 4.3% | Jun 30, 2013 | LOCKON EC-CUBE 2.11.2 through 2.12.4 allows remote attackers to conduct unspecified PHP code-injection attacks via a cra... |
| CVE-2013-3650 | — | — | 1.9% | Jun 30, 2013 | Directory traversal vulnerability in the lfCheckFileName function in data/class/pages/LC_Page_ResizeImage.php in LOCKON ... |
| CVE-2013-2342 | — | — | 0.8% | Jun 30, 2013 | The HP StoreOnce D2D backup system with software before 3.0.0 has a default password of badg3r5 for the HPSupport accoun... |
| CVE-2013-2339 | — | — | 0.5% | Jun 30, 2013 | HP Smart Zero Core 4.3 and 4.3.1 on the t410 All-in-One Smart Zero Client, t410 Smart Zero Client, t510 Flexible Thin Cl... |
| CVE-2013-4098 | — | — | 4.4% | Jun 28, 2013 | ServerAdmin/ErrorViewer.jsp in DS3 Authentication Server allow remote attackers to inject arbitrary error-page text via ... |
| CVE-2013-4097 | — | — | 7.3% | Jun 28, 2013 | ServerAdmin/TestDRConnection.jsp in DS3 Authentication Server allows remote attackers to obtain sensitive information vi... |
| CVE-2013-4096 | — | — | 9.3% | Jun 28, 2013 | ServerAdmin/TestTelnetConnection.jsp in DS3 Authentication Server allows remote authenticated users to execute arbitrary... |
| CVE-2013-4095 | — | — | 5.9% | Jun 28, 2013 | plain/actionsets.html in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 all... |
| CVE-2013-4094 | — | — | 5.6% | Jun 28, 2013 | The Key Management feature in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.... |
| CVE-2013-4093 | — | — | 6.9% | Jun 28, 2013 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to o... |
| CVE-2013-4092 | — | — | 4.9% | Jun 28, 2013 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent att... |
| CVE-2013-4091 | — | — | 5.6% | Jun 28, 2013 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autocom... |
| CVE-2013-3649 | — | — | 1.1% | Jun 28, 2013 | Cross-site scripting (XSS) vulnerability in KENT-WEB CLIP-MAIL before 3.4, when Internet Explorer 7 or earlier is used, ... |
| CVE-2013-3648 | — | — | 1.1% | Jun 28, 2013 | Cross-site scripting (XSS) vulnerability in KENT-WEB POST-MAIL before 6.7, when Internet Explorer 7 or earlier is used, ... |
| CVE-2013-4660 | — | — | 17.2% | Jun 28, 2013 | The JS-YAML module before 2.0.5 for Node.js parses input without properly considering the unsafe !!js/function tag, whic... |
| CVE-2013-2323 | — | — | 1.2% | Jun 28, 2013 | HP SQL/MX 3.0 through 3.2 on NonStop servers, when SQL/MP Objects are used, allows remote authenticated users to bypass ... |
| CVE-2013-2322 | — | — | 1.0% | Jun 28, 2013 | HP SQL/MX 3.2 and earlier on NonStop servers, when SQL/MP Objects are used, allows remote authenticated users to obtain ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now