2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-3959The Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, ...
CVE-2013-3958The login implementation in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and ...
CVE-2013-3957SQL injection vulnerability in the login screen in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SI...
CVE-2013-2783The DNP3 driver in IOServer drivers 1.0.19.0 allows remote attackers to cause a denial of service (infinite loop) or obt...
CVE-2013-2338Unspecified vulnerability on HP Integrated Lights-Out 3 (aka iLO3) cards with firmware before 1.57 and 4 (aka iLO4) card...
CVE-2013-3576ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands vi...
CVE-2013-2337Cross-site scripting (XSS) vulnerability in HP Service Manager 7.11, 9.21, 9.30, and 9.31, and ServiceCenter 6.2.8, allo...
CVE-2013-2336HP Service Manager 7.11, 9.21, 9.30, and 9.31, and ServiceCenter 6.2.8, allows remote attackers to obtain sensitive info...
CVE-2013-3645Cross-site scripting (XSS) vulnerability in the Orchard.Comments module in Orchard before 1.6.1 allows remote attackers ...
CVE-2013-3575hpdiags/frontend2/help/pageview.php in HP Insight Diagnostics 9.4.0.4710 does not properly restrict PHP include or requi...
CVE-2013-3574Absolute path traversal vulnerability in hpdiags/frontend2/commands/saveCompareConfig.php in HP Insight Diagnostics 9.4....
CVE-2013-3573HP Insight Diagnostics 9.4.0.4710 allows remote attackers to conduct unspecified injection attacks via unknown vectors.
CVE-2013-3376Open redirect vulnerability in the help page in Cisco Video Surveillance Operations Manager allows remote attackers to r...
CVE-2013-3375Cross-site scripting (XSS) vulnerability in the portal page in Cisco Prime Central for Hosted Collaboration Solution all...
CVE-2013-3970Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS 7.0r2 through 7.0r8 and 7.1r1 through 7.1r5 and Juno...
CVE-2013-1355Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ...
CVE-2013-3381Cisco Hosted Collaboration Mediation allows remote attackers to cause a denial of service (CPU consumption) via a flood ...
CVE-2013-3380The administrative web interface in the Access Control Server in Cisco Secure Access Control System (ACS) does not prope...
CVE-2013-3343Adobe Flash Player before 10.3.183.90 and 11.x before 11.7.700.224 on Windows, before 10.3.183.90 and 11.x before 11.7.7...
CVE-2013-3142Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2013-3141Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2013-3139Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2013-3138Integer overflow in the TCP/IP kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Wi...
CVE-2013-3136The kernel in Microsoft Windows XP SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, Windows 7 S...
CVE-2013-3126Microsoft Internet Explorer 9 and 10, when script debugging is enabled, does not properly handle objects in memory durin...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now