2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6772 | MEDIUM | 4.3 | 0.7% | Jan 23, 2020 | Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking |
| CVE-2013-6358 | HIGH | 8.8 | 3.7% | Jan 23, 2020 | PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then... |
| CVE-2013-4176 | MEDIUM | 5.5 | 0.4% | Jan 23, 2020 | mysecureshell 1.31: Local Information Disclosure Vulnerability |
| CVE-2013-4175 | MEDIUM | 5.5 | 0.4% | Jan 23, 2020 | MySecureShell 1.31 has a Local Denial of Service Vulnerability |
| CVE-2013-7185 | HIGH | 7.8 | 2.8% | Jan 14, 2020 | PotPlayer 1.5.40688: .avi File Memory Corruption |
| CVE-2013-2773 | HIGH | 7.8 | 0.4% | Jan 14, 2020 | Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution |
| CVE-2013-6225 | CRITICAL | 9.8 | 26.6% | Jan 13, 2020 | LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability |
| CVE-2013-7380 | CRITICAL | 9.8 | 2.2% | Jan 10, 2020 | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability |
| CVE-2013-6430 | MEDIUM | 5.4 | 3.2% | Jan 10, 2020 | The JavaScriptUtils.javaScriptEscape method in web/util/JavaScriptUtils.java in Spring MVC in Spring Framework before 3.... |
| CVE-2013-6231 | HIGH | 8.8 | 9.9% | Jan 10, 2020 | SpagoBI before 4.1 has Privilege Escalation via an error in the AdapterHTTP script |
| CVE-2013-5658 | MEDIUM | 6.1 | 1.5% | Jan 7, 2020 | AultWare pwStore 2010.8.30.0 has XSS |
| CVE-2013-5657 | HIGH | 7.5 | 6.8% | Jan 7, 2020 | AultWare pwStore 2010.8.30.0 has DoS via an empty HTTP request |
| CVE-2013-5656 | HIGH | 7.8 | 1.5% | Jan 7, 2020 | FuzeZip 1.0.0.131625 has a Local Buffer Overflow vulnerability |
| CVE-2013-5638 | MEDIUM | 5.4 | 0.6% | Jan 7, 2020 | Transcend WiFiSD 1.8 has persistent XSS |
| CVE-2013-5637 | MEDIUM | 5.4 | 0.5% | Jan 7, 2020 | PQI AirCard has persistent XSS |
| CVE-2013-5571 | MEDIUM | 5.9 | 0.9% | Jan 7, 2020 | HMailServer 5.3.x and prior: Memory Corruption which could cause DOS |
| CVE-2013-5122 | CRITICAL | 9.8 | 3.7% | Jan 7, 2020 | Cisco Linksys Routers EA2700, EA3500, E4200, EA4500: A bug can cause an unsafe TCP port to open which leads to unauthent... |
| CVE-2013-1642 | MEDIUM | 6.1 | 1.6% | Jan 2, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in QuiXplorer before 2.5.5 allow remote attackers to inject arbitrar... |
| CVE-2013-1420 | MEDIUM | 6.1 | 1.1% | Jan 2, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS before 3.2.1 allow remote attackers to inject arbit... |
| CVE-2013-0737 | MEDIUM | 6.1 | 0.9% | Jan 2, 2020 | Cross-site scripting (XSS) vulnerability in BoltWire 3.5 and earlier allows remote attackers to inject arbitrary web scr... |
| CVE-2013-7351 | MEDIUM | 6.1 | 2.2% | Jan 2, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Shaarli allow remote attackers to inject arbitrary w... |
| CVE-2013-3941 | CRITICAL | 9.8 | 2.8% | Jan 2, 2020 | Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ mar... |
| CVE-2013-3939 | HIGH | 7.8 | 1.7% | Jan 2, 2020 | xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows... |
| CVE-2013-3937 | HIGH | 7.8 | 1.7% | Jan 2, 2020 | Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the... |
| CVE-2013-3932 | HIGH | 8.8 | 1.8% | Jan 2, 2020 | SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated us... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now