2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-1386Adobe Shockwave Player before 12.0.2.122 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2013-1385Adobe Shockwave Player before 12.0.2.122 does not prevent access to address information, which makes it easier for attac...
CVE-2013-1384Adobe Shockwave Player before 12.0.2.122 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2013-1383Buffer overflow in Adobe Shockwave Player before 12.0.2.122 allows attackers to execute arbitrary code via unspecified v...
CVE-2013-1380Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x ...
CVE-2013-1379Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x ...
CVE-2013-1378Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x ...
CVE-2013-1304Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary co...
CVE-2013-1303Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary co...
CVE-2013-1295The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server...
CVE-2013-1296The Remote Desktop ActiveX control in mstscax.dll in Microsoft Remote Desktop Connection Client 6.1 and 7.0 does not pro...
CVE-2013-1293The NTFS kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold ...
CVE-2013-1291win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows S...
CVE-2013-1290Microsoft SharePoint Server 2013, in certain configurations involving legacy My Sites, does not properly establish defau...
CVE-2013-1289Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 SP1, Groove Server 2010 SP1, SharePoint Fou...
CVE-2013-1284Race condition in the kernel in Microsoft Windows 8, Windows Server 2012, and Windows RT allows local users to gain priv...
CVE-2013-1283Race condition in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Wi...
CVE-2013-1282The LDAP service in Microsoft Active Directory, Active Directory Application Mode (ADAM), Active Directory Lightweight D...
CVE-2013-0078The Microsoft Antimalware Client in Windows Defender on Windows 8 and Windows RT uses an incorrect pathname for MsMpEng....
CVE-2013-1821lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (me...
CVE-2013-1898lib/thumbshooter.rb in the Thumbshooter 0.1.5 gem for Ruby allows remote attackers to execute arbitrary commands via she...
CVE-2013-1802The extlib gem 0.9.15 and earlier for Ruby does not properly restrict casts of string values, which might allow remote a...
CVE-2013-1801The httparty gem 0.9.0 and earlier for Ruby does not properly restrict casts of string values, which might allow remote ...
CVE-2013-1800The crack gem 0.3.1 and earlier for Ruby does not properly restrict casts of string values, which might allow remote att...
CVE-2013-1790poppler/Stream.cc in poppler before 0.22.1 allows context-dependent attackers to have an unspecified impact via vectors ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now