2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1944 | — | — | 5.0% | Apr 29, 2013 | The tailMatch function in cookie.c in cURL and libcurl before 7.30.0 does not properly match the path domain when sendin... |
| CVE-2013-1927 | — | — | 4.3% | Apr 29, 2013 | The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a craft... |
| CVE-2013-1926 | — | — | 1.9% | Apr 29, 2013 | The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class loader for applets with the same codebase... |
| CVE-2013-1914 | — | — | 4.1% | Apr 29, 2013 | Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or li... |
| CVE-2013-1196 | — | — | 0.3% | Apr 29, 2013 | The command-line interface in Cisco Secure Access Control System (ACS), Identity Services Engine Software, Context Direc... |
| CVE-2013-3302 | — | — | 0.3% | Apr 29, 2013 | Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users ... |
| CVE-2013-3301 | — | — | 1.0% | Apr 29, 2013 | The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer... |
| CVE-2013-2015 | — | — | 0.4% | Apr 29, 2013 | The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel before 3.7.3 does not properly handle orphan-list en... |
| CVE-2013-1928 | — | — | 0.4% | Apr 29, 2013 | The do_video_set_spu_palette function in fs/compat_ioctl.c in the Linux kernel before 3.6.5 on unspecified architectures... |
| CVE-2013-1227 | — | — | 0.9% | Apr 29, 2013 | Cross-site scripting (XSS) vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remo... |
| CVE-2013-1226 | — | — | 0.6% | Apr 29, 2013 | The Ethernet frame-forwarding implementation in Cisco NX-OS on Nexus 7000 devices allows remote attackers to cause a den... |
| CVE-2013-1219 | — | — | 0.2% | Apr 29, 2013 | SensorApp in Cisco Intrusion Prevention System (IPS) allows local users to cause a denial of service (Regex hardware job... |
| CVE-2013-1216 | — | — | 1.0% | Apr 29, 2013 | Memory leak in the SNMP module in Cisco IOS XR allows remote authenticated users to cause a denial of service (memory co... |
| CVE-2013-1198 | — | — | 0.9% | Apr 29, 2013 | Cross-site scripting (XSS) vulnerability in a Flash component in Cisco Unified Computing System (UCS) Central allows rem... |
| CVE-2013-0553 | — | — | 0.8% | Apr 28, 2013 | The client implementation in IBM Sametime 8.5.1 through 8.5.2.1, as used in Sametime Connect client, Sametime Advanced C... |
| CVE-2013-0533 | — | — | 0.8% | Apr 28, 2013 | Cross-site scripting (XSS) vulnerability in the Sametime Links server in IBM Sametime 8.0.2 through 8.5.2.1 allows remot... |
| CVE-2013-0593 | — | — | 3.1% | Apr 27, 2013 | Unspecified vulnerability in the olch2x32 ActiveX control in IBM SPSS SamplePower 3.0 before 3.0-IM-S3SAMPC-WIN32-FP001 ... |
| CVE-2013-0572 | — | — | 0.6% | Apr 27, 2013 | Cross-site scripting (XSS) vulnerability in IBM Document Connect for Application Support Facility (aka DC4ASF) before 1.... |
| CVE-2013-0571 | — | — | 0.7% | Apr 27, 2013 | Cross-site scripting (XSS) vulnerability in IBM Document Connect for Application Support Facility (aka DC4ASF) before 1.... |
| CVE-2013-0569 | — | — | 1.1% | Apr 27, 2013 | Cross-site scripting (XSS) vulnerability in the Communities component in IBM Connections 4.5 allows remote attackers to ... |
| CVE-2013-1428 | — | — | 60.7% | Apr 26, 2013 | Stack-based buffer overflow in the receive_tcppacket function in net_packet.c in tinc before 1.0.21 and 1.1 before 1.1pr... |
| CVE-2013-2709 | — | — | 1.0% | Apr 26, 2013 | Cross-site request forgery (CSRF) vulnerability in the FourSquare Checkins plugin before 1.3 for WordPress allows remote... |
| CVE-2013-2307 | — | — | 1.5% | Apr 26, 2013 | The Yahoo! Browser application before 1.4.3 for Android allows remote attackers to spoof the address bar via a crafted w... |
| CVE-2013-2306 | — | — | 0.9% | Apr 26, 2013 | The jigbrowser+ application before 1.6.4 for Android does not properly open windows, which allows remote attackers to sp... |
| CVE-2013-0727 | — | — | 0.4% | Apr 26, 2013 | Multiple untrusted search path vulnerabilities in Global Mapper 14.1.0 allow local users to gain privileges via a Trojan... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now