2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-1780Cross-site scripting (XSS) vulnerability in the Best Responsive Theme 7.x-1.x before 7.x-1.1 for Drupal allows remote au...
CVE-2013-1779Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Fresh theme before 7.x-1.4 for Drupal allows remo...
CVE-2013-1778Cross-site scripting (XSS) vulnerability in the Creative Theme 7.x-1.x before 7.x-1.2 for Drupal allows remote authentic...
CVE-2013-0325Multiple cross-site scripting (XSS) vulnerabilities in the Varnish module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-...
CVE-2013-0324Cross-site scripting (XSS) vulnerability in the Rendered links formatter in the Menu Reference module 7.x-1.x before 7.x...
CVE-2013-0323Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.1 f...
CVE-2013-0322Cross-site scripting (XSS) vulnerability in Views in the Ubercart module 7.x-3.x before 7.x-3.4 for Drupal allows remote...
CVE-2013-0321Cross-site scripting (XSS) vulnerability in Views in the Ubercart Views (uc_views) module 6.x before 6.x-3.3 for Drupal ...
CVE-2013-0320Cross-site request forgery (CSRF) vulnerability in the Taxonomy Manager (taxonomy_manager) module 6.x-2.x before 6.x-2.2...
CVE-2013-0319Cross-site scripting (XSS) vulnerability in the Yandex.Metrics module 6.x-1.x before 6.x-1.6 and 7.x-1.x before 7.x-1.5 ...
CVE-2013-0318The admin page in the Banckle Chat module for Drupal does not properly restrict access, which allows remote attackers to...
CVE-2013-0317Cross-site scripting (XSS) vulnerability in the Manager Change for Organic Groups (og_manager_change) module 7.x-2.x bef...
CVE-2013-0316The Image module in Drupal 7.x before 7.20 allows remote attackers to cause a denial of service (CPU and disk space cons...
CVE-2013-0260Unspecified vulnerability in the Drush Debian Packaging module for Drupal allows local users to obtain database credenti...
CVE-2013-0259Cross-site scripting (XSS) vulnerability in the Boxes module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticat...
CVE-2013-0258The Google Authenticator login (ga_login) module 7.x before 7.x-1.3 for Drupal, when multi-factor authentication is enab...
CVE-2013-0257The email2image module 6.x-1.x and 6.x-2.x for Drupal does not properly restrict access to nodes, which allows remote at...
CVE-2013-0182The Payment module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict access to payments, which allows remote ...
CVE-2013-0181Cross-site scripting (XSS) vulnerability in Views in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupa...
CVE-2013-2300The FlickWnn (aka OpenWnn/Flick support) application 2.02 and earlier for Android uses weak permissions for unspecified ...
CVE-2013-0720The COBIME application before 0.9.4 for Android uses weak permissions for unspecified files, which allows attackers to o...
CVE-2013-0719The ArtIME Japanese Input application 1.1.2 and earlier for Android uses weak permissions for unspecified files, which a...
CVE-2013-0718The Simeji application 4.8.1 and earlier for Android uses weak permissions for unspecified files, which allows attackers...
CVE-2013-0489Cross-site request forgery (CSRF) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x a...
CVE-2013-0488Cross-site scripting (XSS) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows r...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now