2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-3648Cross-site scripting (XSS) vulnerability in KENT-WEB POST-MAIL before 6.7, when Internet Explorer 7 or earlier is used, ...
CVE-2013-4660The JS-YAML module before 2.0.5 for Node.js parses input without properly considering the unsafe !!js/function tag, whic...
CVE-2013-2323HP SQL/MX 3.0 through 3.2 on NonStop servers, when SQL/MP Objects are used, allows remote authenticated users to bypass ...
CVE-2013-2322HP SQL/MX 3.2 and earlier on NonStop servers, when SQL/MP Objects are used, allows remote authenticated users to obtain ...
CVE-2013-3386The IronPort Spam Quarantine (ISQ) component in the web framework in IronPort AsyncOS on Cisco Email Security Appliance ...
CVE-2013-3385The management GUI in the web framework in IronPort AsyncOS on Cisco Web Security Appliance devices before 7.1.3-013, 7....
CVE-2013-3384The web framework in IronPort AsyncOS on Cisco Web Security Appliance devices before 7.1.3-013, 7.5 before 7.5.0-838, an...
CVE-2013-3383The web framework in IronPort AsyncOS on Cisco Web Security Appliance devices before 7.1.3-013, 7.5 before 7.5.0-838, an...
CVE-2013-4721SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers t...
CVE-2013-4720SQL injection vulnerability in the WEC Discussion Forum extension before 2.1.2 for TYPO3 allows remote attackers to exec...
CVE-2013-4719SQL injection vulnerability in the SEO Pack for tt_news extension before 1.3.3 for TYPO3 allows remote attackers to exec...
CVE-2013-3398The web framework in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance provides different responses ...
CVE-2013-3397Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications ...
CVE-2013-3396Cross-site scripting (XSS) vulnerability in the web framework in Cisco Content Security Management on Security Managemen...
CVE-2013-3393The Precision Video Engine component in Cisco Jabber for Windows and Cisco Virtualization Experience Media Engine allows...
CVE-2013-3382The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before...
CVE-2013-1700The Mozilla Maintenance Service in Mozilla Firefox before 22.0 on Windows does not properly handle inability to launch t...
CVE-2013-1699The Internationalized Domain Name (IDN) display algorithm in Mozilla Firefox before 22.0 does not properly handle the .c...
CVE-2013-1698The getUserMedia permission implementation in Mozilla Firefox before 22.0 references the URL of a top-level document ins...
CVE-2013-1697The XrayWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7...
CVE-2013-1696Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, which allows remote atta...
CVE-2013-1695Mozilla Firefox before 22.0 does not properly implement certain DocShell inheritance behavior for the sandbox attribute ...
CVE-2013-1694The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17...
CVE-2013-1693The SVG filter implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7,...
CVE-2013-1692Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now