2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-0314 | — | — | 1.6% | Apr 12, 2013 | The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication ... |
| CVE-2013-0282 | — | — | 1.7% | Apr 12, 2013 | OpenStack Keystone Grizzly before 2013.1, Folsom 2012.1.3 and earlier, and Essex does not properly check if the (1) user... |
| CVE-2013-0501 | — | — | 1.5% | Apr 12, 2013 | The EdrawSoft EDOFFICE.EDOfficeCtrl.1 ActiveX control, as used in Edraw Office Viewer Component, the client in IBM Cogno... |
| CVE-2013-2779 | — | — | 2.0% | Apr 11, 2013 | Cisco IOS XE 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) doe... |
| CVE-2013-1189 | — | — | 0.6% | Apr 11, 2013 | Cisco Universal Broadband (aka uBR) 10000 series routers, when an IPv4/IPv6 dual-stack modem is used, allow remote attac... |
| CVE-2013-1173 | — | — | 0.3% | Apr 11, 2013 | Heap-based buffer overflow in ciscod.exe in the Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka A... |
| CVE-2013-1172 | — | — | 0.3% | Apr 11, 2013 | The Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka AnyConnect VPN Client) does not properly veri... |
| CVE-2013-1170 | — | — | 1.3% | Apr 11, 2013 | The Cisco Prime Network Control System (NCS) appliance with software before 1.1.1.24 has a default password for the data... |
| CVE-2013-1169 | — | — | 1.8% | Apr 11, 2013 | Cisco Unified MeetingPlace Web Conferencing Server 7.x before 7.1MR1 Patch 2, 8.0 before 8.0MR1 Patch 2, and 8.5 before ... |
| CVE-2013-1168 | — | — | 1.6% | Apr 11, 2013 | The web server in Cisco Unified MeetingPlace Application Server 7.x before 7.1MR1 Patch 2, 8.0 before 8.0MR1 Patch 1, an... |
| CVE-2013-1167 | — | — | 2.0% | Apr 11, 2013 | Cisco IOS XE 3.2 through 3.4 before 3.4.2S, and 3.5, on 1000 series Aggregation Services Routers (ASR), when bridge doma... |
| CVE-2013-1166 | — | — | 1.9% | Apr 11, 2013 | Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Route... |
| CVE-2013-1165 | — | — | 1.9% | Apr 11, 2013 | Cisco IOS XE 2.x and 3.x before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (... |
| CVE-2013-1164 | — | — | 1.9% | Apr 11, 2013 | Cisco IOS XE 3.4 before 3.4.4S, 3.5, and 3.6 on 1000 series Aggregation Services Routers (ASR) does not properly impleme... |
| CVE-2013-1155 | — | — | 1.3% | Apr 11, 2013 | The auth-proxy functionality in Cisco Firewall Services Module (FWSM) software 3.1 and 3.2 before 3.2(20.1), 4.0 before ... |
| CVE-2013-1152 | — | — | 1.3% | Apr 11, 2013 | Cisco Adaptive Security Appliances (ASA) devices with software 9.0 before 9.0(1.2) allow remote attackers to cause a den... |
| CVE-2013-1151 | — | — | 0.7% | Apr 11, 2013 | Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.31), 8.1 and 8.2 b... |
| CVE-2013-1150 | — | — | 2.2% | Apr 11, 2013 | The authentication-proxy implementation on Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2... |
| CVE-2013-1149 | — | — | 1.3% | Apr 11, 2013 | Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.28), 8.1 and 8.2 b... |
| CVE-2013-0927 | — | — | 0.9% | Apr 10, 2013 | Google Chrome OS before 26.0.1410.57 relies on a Pango pango-utils.c read_config implementation that loads the contents ... |
| CVE-2013-2766 | — | — | 1.8% | Apr 10, 2013 | Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk 4.3.0 through 4.3.5 allows remote attackers to inject a... |
| CVE-2013-2716 | — | — | 1.3% | Apr 10, 2013 | Puppet Labs Puppet Enterprise before 2.8.0 does not use a "randomized secret" in the CAS client config file (cas_client_... |
| CVE-2013-1912 | — | — | 5.4% | Apr 10, 2013 | Buffer overflow in HAProxy 1.4 through 1.4.22 and 1.5-dev through 1.5-dev17, when HTTP keep-alive is enabled, using HTTP... |
| CVE-2013-1387 | — | — | 4.6% | Apr 10, 2013 | Unspecified vulnerability in Adobe ColdFusion 9.0 before Update 10, 9.0.1 before Update 9, 9.0.2 before Update 4, and 10... |
| CVE-2013-1388 | — | — | 4.5% | Apr 10, 2013 | Unspecified vulnerability in Adobe ColdFusion 9.0 before Update 10, 9.0.1 before Update 9, 9.0.2 before Update 4, and 10... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now