2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2013-4088MEDIUM6.5Kernel/Modules/AgentTicketWatcher.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.21, 3.1.x before 3.1.17, and ...
CVE-2013-3551MEDIUM6.5Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3....
CVE-2013-4228MEDIUM4.3The OG access fields (visibility fields) implementation in Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal ...
CVE-2013-4226MEDIUM6.5The Authenticated User Page Caching (Authcache) module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict acce...
CVE-2013-2679MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Cisco Linksys E4200 router with firmware 1.0.05 build 7 allow rem...
CVE-2013-5594MEDIUM4.3Mozilla Firefox before 25 allows modification of anonymous content of pluginProblem.xml binding
CVE-2013-7324MEDIUM5.3Webkit-GTK 2.x (any version with HTML5 audio/video support based on GStreamer) allows remote attackers to trigger unexpe...
CVE-2013-5212MEDIUM6.1Cross-site Scripting (XSS) in EasyXDM before 2.4.18 allows remote attackers to inject arbitrary web script or html via t...
CVE-2013-4792MEDIUM5.5PrestaShop before 1.4.11 allows logout CSRF.
CVE-2013-4791MEDIUM5.4PrestaShop before 1.4.11 allows Logistician, translators and other low level profiles/accounts to inject a persistent XS...
CVE-2013-6927MEDIUM5.5Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account.
CVE-2013-6022MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability exists in Tiki Wiki CMG Groupware 11.0 via the id paraZeroClipboard.swf, whic...
CVE-2013-4602MEDIUM5.5A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified fun...
CVE-2013-2637MEDIUM6.1A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4 a...
CVE-2013-6681MEDIUM5.9Tube Map Live Underground for Android before 3.0.22 has an Information Disclosure Vulnerability
CVE-2013-4395MEDIUM6.1Simple Machines Forum (SMF) through 2.0.5 has XSS
CVE-2013-1938MEDIUM6.1Zimbra 2013 has XSS in aspell.php
CVE-2013-1410MEDIUM6.1Perforce P4web 2011.1 and 2012.1 has multiple XSS vulnerabilities
CVE-2013-2213MEDIUM5.5The KRandom::random function in KDE Paste Applet after 4.10.5 in kdeplasma-addons uses the GNU C Library rand function's...
CVE-2013-5988MEDIUM6.1A Cross-site Scripting (XSS) vulnerability exists in the All in One SEO Pack plugin before 2.0.3.1 for WordPress via the...
CVE-2013-1760MEDIUM6.1The Bug Genie before 3.2.6 has Multiple XSS and HTML Injection Vulnerabilities
CVE-2013-2108MEDIUM5.4WordPress WP Cleanfix Plugin 2.4.4 has CSRF
CVE-2013-1353MEDIUM5.4Orange HRM 2.7.1 allows XSS via the vacancy name.
CVE-2013-3096MEDIUM5.9D-Link DIR865L v1.03 suffers from an "Unauthenticated Hardware Linking" vulnerability.
CVE-2013-3067MEDIUM5.4Linksys WRT310Nv2 2.0.0.1 is vulnerable to XSS.

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now