2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1911 | — | — | 2.0% | Apr 3, 2013 | lib/ldoce/word.rb in the ldoce 0.0.2 gem for Ruby allows remote attackers to execute arbitrary commands via shell metach... |
| CVE-2013-1665 | — | — | 4.6% | Apr 3, 2013 | The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex and Folsom, Django, a... |
| CVE-2013-1664 | — | — | 4.9% | Apr 3, 2013 | The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex, Folsom, and Grizzly;... |
| CVE-2013-0280 | — | — | — | Apr 3, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-1664, CVE-2013-1665. Reason: This candidate is a... |
| CVE-2013-0279 | — | — | — | Apr 3, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-1664, CVE-2013-1665. Reason: This candidate is a... |
| CVE-2013-0278 | — | — | — | Apr 3, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-1664, CVE-2013-1665. Reason: This candidate is a... |
| CVE-2013-1823 | — | — | 1.9% | Apr 2, 2013 | Cross-site scripting (XSS) vulnerability in the Notifications form in Red Hat Subscription Asset Manager before 1.2.1 al... |
| CVE-2013-2744 | — | — | 2.1% | Apr 2, 2013 | importbuddy.php in the BackupBuddy plugin 2.2.25 for WordPress allows remote attackers to obtain configuration informati... |
| CVE-2013-2743 | — | — | 2.6% | Apr 2, 2013 | importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress allows remote attackers ... |
| CVE-2013-2742 | — | — | 2.4% | Apr 2, 2013 | importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not reliably delete... |
| CVE-2013-2741 | — | — | 2.6% | Apr 2, 2013 | importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, 2.2.28, and 2.2.4 for WordPress does not require that au... |
| CVE-2013-1808 | — | — | 6.3% | Apr 2, 2013 | Cross-site scripting (XSS) vulnerability in ZeroClipboard.swf and ZeroClipboard10.swf in ZeroClipboard before 1.0.8, as ... |
| CVE-2013-1799 | — | — | 1.0% | Apr 2, 2013 | Gnome Online Accounts (GOA) 3.6.x before 3.6.3 and 3.7.x before 3.7.91, does not properly validate SSL certificates when... |
| CVE-2013-0240 | — | — | 1.4% | Apr 2, 2013 | Gnome Online Accounts (GOA) 3.4.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.5, does not properly validate SSL certificat... |
| CVE-2013-1171 | — | — | 0.9% | Apr 1, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the element-list implementation in Cisco Connected Grid Network M... |
| CVE-2013-1163 | — | — | 1.1% | Apr 1, 2013 | Multiple SQL injection vulnerabilities in the device-management implementation in Cisco Connected Grid Network Managemen... |
| CVE-2013-0502 | — | — | 1.1% | Apr 1, 2013 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Information Server 8.1, 8.5 through FP3, 8.7 through FP2, and... |
| CVE-2013-0659 | — | — | 5.9% | Apr 1, 2013 | The debugging feature on the Siemens CP 1604 and CP 1616 interface cards with firmware before 2.5.2 allows remote attack... |
| CVE-2013-2686 | — | — | 2.1% | Apr 1, 2013 | main/http.c in the HTTP server in Asterisk Open Source 1.8.x before 1.8.20.2, 10.x before 10.12.2, and 11.x before 11.2.... |
| CVE-2013-2685 | — | — | 2.6% | Apr 1, 2013 | Stack-based buffer overflow in res/res_format_attr_h264.c in Asterisk Open Source 11.x before 11.2.2 allows remote attac... |
| CVE-2013-2264 | — | — | 1.3% | Apr 1, 2013 | The SIP channel driver in Asterisk Open Source 1.8.x before 1.8.20.2, 10.x before 10.12.2, and 11.x before 11.2.2; Certi... |
| CVE-2013-0130 | — | — | 2.3% | Mar 29, 2013 | Multiple buffer overflows in Core FTP before 2.2 build 1769 allow remote FTP servers to execute arbitrary code or cause ... |
| CVE-2013-2301 | — | — | 1.0% | Mar 29, 2013 | The OMRON OpenWnn application before 1.3.6 for Android uses weak permissions for unspecified files, which allows attacke... |
| CVE-2013-1299 | — | — | 9.5% | Mar 29, 2013 | Microsoft Windows Modern Mail allows remote attackers to spoof link targets via a crafted HTML e-mail message. |
| CVE-2013-1085 | — | — | 5.6% | Mar 29, 2013 | Stack-based buffer overflow in the nim: protocol handler in Novell GroupWise Messenger 2.04 and earlier, and Novell Mess... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now