2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-3448Cisco WebEx Meetings Server does not check whether a user account is active, which allows remote authenticated users to ...
CVE-2013-3220bitcoind and Bitcoin-Qt before 0.4.9rc2, 0.5.x before 0.5.8rc2, 0.6.x before 0.6.5rc2, and 0.7.x before 0.7.3rc2, and wx...
CVE-2013-3219bitcoind and Bitcoin-Qt 0.8.x before 0.8.1 do not enforce a certain block protocol rule, which allows remote attackers t...
CVE-2013-1190The C-Series Rack Server component 1.4 in Cisco Unified Computing System (UCS) does not properly restrict inbound access...
CVE-2013-3724The mk_request_header_process function in mk_request.c in Monkey 1.1.1 allows remote attackers to cause a denial of serv...
CVE-2013-4897Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ...
CVE-2013-3444The web framework in Cisco WAAS Software before 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1; ...
CVE-2013-3443The web service framework in Cisco WAAS Software 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1 ...
CVE-2013-4912Open redirect vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to redirect us...
CVE-2013-4911Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote atta...
CVE-2013-4652Unspecified vulnerability in the command-line management interface on Siemens Scalance W7xx devices with firmware before...
CVE-2013-4651Siemens Scalance W7xx devices with firmware before 4.5.4 use the same hardcoded X.509 certificate across different custo...
CVE-2013-2994IBM WebSphere Commerce 7.0 Feature Pack 4 and Feature Pack 5 incorrectly maintains a valid session after unspecified int...
CVE-2013-4673The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 does not properly implement RADIUS authe...
CVE-2013-4672The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 has an incorrect sudoers file, which all...
CVE-2013-4671Cross-site request forgery (CSRF) vulnerability in the management console on the Symantec Web Gateway (SWG) appliance be...
CVE-2013-4670Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) applianc...
CVE-2013-1617Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.1....
CVE-2013-1616The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote attackers to execute arbit...
CVE-2013-2993IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.7 does not properly perform authentication for unspeci...
CVE-2013-5020Multiple cross-site scripting (XSS) vulnerabilities in bb_admin.php in MiniBB before 3.0.1 allow remote attackers to inj...
CVE-2013-5019Stack-based buffer overflow in Ultra Mini HTTPD 1.21 allows remote attackers to execute arbitrary code via a long resour...
CVE-2013-4674Cross-site scripting (XSS) vulnerability in the Web Email Protection component in Symantec Encryption Management Server ...
CVE-2013-4156Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory corruption) or possi...
CVE-2013-4131The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.10 and 1.8.x before 1.8.1 allows remote authe...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now