2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1684 | — | — | 3.5% | Jun 26, 2013 | Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::LookupMediaElementURITable function in Mozilla Firef... |
| CVE-2013-1683 | — | — | 5.4% | Jun 26, 2013 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 22.0 allow remote attackers to caus... |
| CVE-2013-1682 | — | — | 5.4% | Jun 26, 2013 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.... |
| CVE-2013-4683 | — | — | 1.2% | Jun 25, 2013 | SQL injection vulnerability in the meta_feedit extension 0.1.10 and earlier for TYPO3 allows remote attackers to execute... |
| CVE-2013-4682 | — | — | 1.2% | Jun 25, 2013 | SQL injection vulnerability in the Multishop extension before 2.0.39 for TYPO3 allows remote attackers to execute arbitr... |
| CVE-2013-4681 | — | — | 1.2% | Jun 25, 2013 | SQL injection vulnerability in the sofortueberweisung2commerce extension before 2.0.1 for TYPO3 allows remote attackers ... |
| CVE-2013-4680 | — | — | 1.3% | Jun 25, 2013 | Open redirect vulnerability in Maag Form Captcha extension 2.0.0 and earlier for TYPO3 allows remote attackers to redire... |
| CVE-2013-2177 | — | — | 1.2% | Jun 25, 2013 | Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.3 f... |
| CVE-2013-1971 | — | — | 0.9% | Jun 25, 2013 | Cross-site scripting (XSS) vulnerability in the MP3 Player module for Drupal 6.x allows remote authenticated users with ... |
| CVE-2013-4669 | — | — | 0.9% | Jun 25, 2013 | FortiClient before 4.3.5.472 on Windows, before 4.0.3.134 on Mac OS X, and before 4.0 on Android; FortiClient Lite befor... |
| CVE-2013-4604 | — | — | 1.1% | Jun 25, 2013 | Fortinet FortiOS before 5.0.3 on FortiGate devices does not properly restrict Guest capabilities, which allows remote au... |
| CVE-2013-2129 | — | — | 1.3% | Jun 24, 2013 | Cross-site scripting (XSS) vulnerability in the Webform module 6.x-3.x before 6.x-3.19 for Drupal allows remote authenti... |
| CVE-2013-2036 | — | — | 1.2% | Jun 24, 2013 | Cross-site scripting (XSS) vulnerability in the Filebrowser module 6.x-2.x before 6.x-2.2 for Drupal allows remote attac... |
| CVE-2013-1972 | — | — | 1.4% | Jun 24, 2013 | Cross-site request forgery (CSRF) vulnerability in the elFinder file manager module 6.x-0.x before 6.x-0.8 and 7.x-0.x b... |
| CVE-2013-1906 | — | — | 1.1% | Jun 24, 2013 | Cross-site scripting (XSS) vulnerability in the Rules module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticat... |
| CVE-2013-4636 | — | — | 2.0% | Jun 21, 2013 | The mget function in libmagic/softmagic.c in the Fileinfo component in PHP 5.4.x before 5.4.16 allows remote attackers t... |
| CVE-2013-4635 | — | — | 4.2% | Jun 21, 2013 | Integer overflow in the SdnToJewish function in jewish.c in the Calendar component in PHP before 5.3.26 and 5.4.x before... |
| CVE-2013-4615 | — | — | 15.6% | Jun 21, 2013 | The Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers allow remote attackers to cause ... |
| CVE-2013-4614 | — | — | 2.8% | Jun 21, 2013 | English/pages_MacUS/wls_set_content.html on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX9... |
| CVE-2013-4613 | — | — | 2.0% | Jun 21, 2013 | The default configuration of the administrative interface on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX89... |
| CVE-2013-3392 | — | — | 0.5% | Jun 21, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco WebEx Social allow remote attackers to hijack the au... |
| CVE-2013-3250 | — | — | 1.0% | Jun 21, 2013 | Cross-site request forgery (CSRF) vulnerability in the WP Maintenance Mode plugin before 1.8.8 for WordPress allows remo... |
| CVE-2013-2110 | — | — | 6.7% | Jun 21, 2013 | Heap-based buffer overflow in the php_quot_print_encode function in ext/standard/quot_print.c in PHP before 5.3.26 and 5... |
| CVE-2013-0523 | — | — | 0.7% | Jun 21, 2013 | IBM WebSphere Commerce Enterprise 5.6.x through 5.6.1.5, 6.0.x through 6.0.0.11, and 7.0.x through 7.0.0.7 does not use ... |
| CVE-2013-2961 | — | — | 1.8% | Jun 21, 2013 | The internal web server in the Basic Services component in IBM Tivoli Monitoring (ITM) 6.2.0 through FP3, 6.2.1 through ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now