2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2365 | — | — | 1.1% | Jul 22, 2013 | HP Database and Middleware Automation (DMA) 10.x before 10.10, when SSL is used, allows remote attackers to obtain sensi... |
| CVE-2013-2364 | — | — | 1.3% | Jul 22, 2013 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated... |
| CVE-2013-2363 | — | — | 3.3% | Jul 22, 2013 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to obtain sensitive information via unspecified... |
| CVE-2013-2362 | — | — | 0.5% | Jul 22, 2013 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows local users to cause a denial of se... |
| CVE-2013-2361 | — | — | 2.5% | Jul 22, 2013 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to ... |
| CVE-2013-2360 | — | — | 1.8% | Jul 22, 2013 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause... |
| CVE-2013-2359 | — | — | 1.8% | Jul 22, 2013 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause... |
| CVE-2013-2358 | — | — | 1.8% | Jul 22, 2013 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause... |
| CVE-2013-2357 | — | — | 1.8% | Jul 22, 2013 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause... |
| CVE-2013-2356 | — | — | 3.3% | Jul 22, 2013 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to obtain sensitive information via unspecified... |
| CVE-2013-2355 | — | — | 3.5% | Jul 22, 2013 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to bypass intended access restrictions and obta... |
| CVE-2013-4871 | — | — | 0.7% | Jul 20, 2013 | Cross-site request forgery (CSRF) vulnerability in the TEQneers SEO Enhancements (tq_seo) extension before 5.0.1 for TYP... |
| CVE-2013-4870 | — | — | 1.1% | Jul 20, 2013 | SQL injection vulnerability in the News Search (news_search) extension 0.1.0 for TYPO3 allows remote attackers to execut... |
| CVE-2013-3656 | — | — | 2.0% | Jul 20, 2013 | Cybozu Office 9.1.0 and earlier does not properly manage sessions, which allows remote attackers to bypass authenticatio... |
| CVE-2013-2251 | CRITICAL | 9.8 | 100.0% | Jul 20, 2013 | Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a ... |
| CVE-2013-2248 | — | — | 95.2% | Jul 20, 2013 | Multiple open redirect vulnerabilities in Apache Struts 2.0.0 through 2.3.15 allow remote attackers to redirect users to... |
| CVE-2013-2070 | — | — | 11.9% | Jul 20, 2013 | http/modules/ngx_http_proxy_module.c in nginx 1.1.4 through 1.2.8 and 1.3.0 through 1.4.0, when proxy_pass is used with ... |
| CVE-2013-2028 | — | — | 87.5% | Jul 20, 2013 | The ngx_http_parse_chunked function in http/ngx_http_parse.c in nginx 1.3.9 through 1.4.0 allows remote attackers to cau... |
| CVE-2013-1955 | — | — | 1.1% | Jul 20, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php and (2) datePicker.php in Easy PHP Calendar 6.x and... |
| CVE-2013-1879 | — | — | 6.4% | Jul 20, 2013 | Cross-site scripting (XSS) vulnerability in scheduled.jsp in Apache ActiveMQ 5.8.0 and earlier allows remote attackers t... |
| CVE-2013-3436 | — | — | 1.4% | Jul 19, 2013 | The default configuration of the Group Encrypted Transport VPN (GET VPN) feature on Cisco IOS uses an improper mechanism... |
| CVE-2013-3275 | — | — | 0.8% | Jul 19, 2013 | EMC Avamar Server and Avamar Virtual Edition before 7.0 on Data Store Gen3, Gen4, and Gen4s platforms do not properly re... |
| CVE-2013-3274 | — | — | 3.1% | Jul 19, 2013 | EMC Avamar Server and Avamar Virtual Edition before 7.0 on Data Store Gen3, Gen4, and Gen4s platforms do not properly de... |
| CVE-2013-0559 | — | — | 1.3% | Jul 19, 2013 | Unspecified vulnerability in IBM API Management 2.0 before 2.0.0.1 allows remote attackers to access tenant APIs, and co... |
| CVE-2013-4878 | — | — | 31.1% | Jul 18, 2013 | The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has a... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now