2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-4922Double free vulnerability in the dissect_dcom_ActivationProperties function in epan/dissectors/packet-dcom-sysact.c in t...
CVE-2013-4921Off-by-one error in the dissect_radiotap function in epan/dissectors/packet-ieee80211-radiotap.c in the Radiotap dissect...
CVE-2013-4920The P1 dissector in Wireshark 1.10.x before 1.10.1 does not properly initialize a global variable, which allows remote a...
CVE-2013-4954Multiple cross-site scripting (XSS) vulnerabilities in wp-login.php in the Genetech Solutions Pie-Register plugin before...
CVE-2013-4953SQL injection vulnerability in play.php in Top Games Script 1.2 allows remote attackers to execute arbitrary SQL command...
CVE-2013-4952SQL injection vulnerability in functions/global.php in Elemata CMS RC 3.0 allows remote attackers to execute arbitrary S...
CVE-2013-4951Multiple cross-site scripting (XSS) vulnerabilities in Mintboard 0.3 allow remote attackers to inject arbitrary web scri...
CVE-2013-4950Cross-site scripting (XSS) vulnerability in view.php in Machform 2 allows remote attackers to inject arbitrary web scrip...
CVE-2013-4949Unrestricted file upload vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary PHP code b...
CVE-2013-4948SQL injection vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2013-4947Unspecified vulnerability in the update and build database page in Sawmill before 8.6.3 allows remote attackers to have ...
CVE-2013-4946Multiple cross-site scripting (XSS) vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers t...
CVE-2013-4945Multiple SQL injection vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers to execute arb...
CVE-2013-4140Cross-site scripting (XSS) vulnerability in the TinyBox (Simple Splash) module before 7.x-2.2 for Drupal allows remote a...
CVE-2013-4944Cross-site scripting (XSS) vulnerability in the BuddyPress Extended Friendship Request plugin before 1.0.2 for WordPress...
CVE-2013-3515Multiple cross-site scripting (XSS) vulnerabilities in OpenX Source 2.8.10 and earlier allow remote attackers to inject ...
CVE-2013-2181Cross-site scripting (XSS) vulnerability in the Directory Listing plugin in Monkey HTTP Daemon (monkeyd) 1.2.2 allows at...
CVE-2013-0723Multiple heap-based buffer overflows in etxrw.dll in Kingsoft Spreadsheets 2012 8.1.0.3030 allow remote attackers to cau...
CVE-2013-4851The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 an...
CVE-2013-4163The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3 ...
CVE-2013-4162The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3 ...
CVE-2013-4129The bridge multicast implementation in the Linux kernel through 3.10.3 does not check whether a certain timer is armed b...
CVE-2013-4127Use-after-free vulnerability in the vhost_net_set_backend function in drivers/vhost/net.c in the Linux kernel through 3....
CVE-2013-3580The TrustGo Antivirus & Mobile Security application before 1.3.6 for Android allows attackers to cause a denial of servi...
CVE-2013-3033SQL injection vulnerability in the server component in IBM Tivoli Remote Control 5.1.2 before 5.1.2-TIV-TRC512-IF0015 al...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now