2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3534 | — | — | 1.2% | May 13, 2013 | Cross-site scripting (XSS) vulnerability in the aiContactSafe component before 2.0.21 for Joomla! allows remote attacker... |
| CVE-2013-2021 | — | — | 3.5% | May 13, 2013 | pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a cr... |
| CVE-2013-2020 | — | — | 3.5% | May 13, 2013 | Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial o... |
| CVE-2013-1952 | — | — | 0.4% | May 13, 2013 | Xen 4.x, when using Intel VT-d for a bus mastering capable PCI device, does not properly check the source when accessing... |
| CVE-2013-1940 | — | — | 0.4% | May 13, 2013 | X.Org X server before 1.13.4 and 1.4.x before 1.14.1 does not properly restrict access to input events when adding a new... |
| CVE-2013-1922 | — | — | 0.3% | May 13, 2013 | qemu-nbd in QEMU, as used in Xen 4.2.x, determines the format of a raw disk image based on the header, which allows loca... |
| CVE-2013-1919 | — | — | 0.4% | May 13, 2013 | Xen 4.2.x and 4.1.x does not properly restrict access to IRQs, which allows local stub domain clients to gain access to ... |
| CVE-2013-1918 | — | — | 0.4% | May 13, 2013 | Certain page table manipulation operations in Xen 4.1.x, 4.2.x, and earlier are not preemptible, which allows local PV k... |
| CVE-2013-1917 | — | — | 0.4% | May 13, 2013 | Xen 3.1 through 4.x, when running 64-bit hosts on Intel CPUs, does not clear the NT flag when using an IRET after a SYSE... |
| CVE-2013-1897 | — | — | 2.1% | May 13, 2013 | The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.... |
| CVE-2013-1136 | — | — | 0.2% | May 13, 2013 | The crypto engine process in Cisco IOS on Aggregation Services Router (ASR) Route Processor 2 does not properly manage m... |
| CVE-2013-3533 | — | — | 1.3% | May 10, 2013 | Multiple SQL injection vulnerabilities in Virtual Access Monitor 3.10.17 and earlier allow attackers to execute arbitrar... |
| CVE-2013-3532 | — | — | 5.4% | May 10, 2013 | SQL injection vulnerability in settings.php in the Web Dorado Spider Video Player plugin 2.1 for WordPress allows remote... |
| CVE-2013-3531 | — | — | 2.2% | May 10, 2013 | SQL injection vulnerability in meneger.php in RadioCMS 2.2 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2013-3530 | — | — | 4.6% | May 10, 2013 | SQL injection vulnerability in playlist.php in the Spiffy XSPF Player plugin 0.1 for WordPress allows remote attackers t... |
| CVE-2013-3529 | — | — | 4.6% | May 10, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in user/obits.php in the WP FuneralPress plugin before 1.1.7 for Wor... |
| CVE-2013-3528 | — | — | 5.7% | May 10, 2013 | Unspecified vulnerability in the update check in Vanilla Forums before 2.0.18.8 has unspecified impact and remote attack... |
| CVE-2013-3527 | — | — | 3.5% | May 10, 2013 | Multiple SQL injection vulnerabilities in Vanilla Forums before 2.0.18.8 allow remote attackers to execute arbitrary SQL... |
| CVE-2013-3526 | — | — | 13.9% | May 10, 2013 | Cross-site scripting (XSS) vulnerability in js/ta_loaded.js.php in the Traffic Analyzer plugin, possibly 3.3.2 and earli... |
| CVE-2013-3525 | — | — | 2.8% | May 10, 2013 | SQL injection vulnerability in Approvals/ in Request Tracker (RT) 4.0.10 and earlier allows remote attackers to execute ... |
| CVE-2013-3524 | — | — | 2.6% | May 10, 2013 | SQL injection vulnerability in popupnewsitem/ in the Pop Up News module 2.0 and possibly earlier for phpVMS allows remot... |
| CVE-2013-3523 | — | — | 1.6% | May 10, 2013 | SQL injection vulnerability in This HTML Is Simple (THIS) before 1.2.4 allows remote to execute arbitrary SQL commands v... |
| CVE-2013-3522 | — | — | 27.1% | May 10, 2013 | SQL injection vulnerability in index.php/ajax/api/reputation/vote in vBulletin 5.0.0 Beta 11, 5.0.0 Beta 28, and earlier... |
| CVE-2013-3254 | — | — | 1.6% | May 10, 2013 | Cross-site scripting (XSS) vulnerability in wp-admin/admin.php in the WP Photo Album Plus plugin before 5.0.3 for WordPr... |
| CVE-2013-2977 | — | — | 4.7% | May 10, 2013 | Integer overflow in IBM Notes 8.5.x before 8.5.3 FP4 Interim Fix 1 and 9.x before 9.0 Interim Fix 1 on Windows, and 8.5.... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now