2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-0163 | MEDIUM | 5.5 | 0.3% | Dec 5, 2019 | OpenShift haproxy cartridge: predictable /tmp in set-proxy connection hook which could facilitate DoS |
| CVE-2013-2745 | CRITICAL | 9.8 | 2.0% | Dec 4, 2019 | An SQL Injection vulnerability exists in MiniDLNA prior to 1.1.0 |
| CVE-2013-7325 | HIGH | 8.8 | 1.8% | Dec 3, 2019 | An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code vi... |
| CVE-2013-4486 | CRITICAL | 9.8 | 1.5% | Dec 3, 2019 | Zanata 3.0.0 through 3.1.2 has RCE due to EL interpolation in logging |
| CVE-2013-4411 | MEDIUM | 4.3 | 1.4% | Dec 3, 2019 | Review Board: URL processing gives unauthorized users access to review lists |
| CVE-2013-4235 | MEDIUM | 4.7 | 0.3% | Dec 3, 2019 | shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees |
| CVE-2013-2228 | HIGH | 8.1 | 1.9% | Dec 3, 2019 | SaltStack RSA Key Generation allows remote users to decrypt communications |
| CVE-2013-2106 | HIGH | 7.5 | 1.6% | Dec 3, 2019 | webauth before 4.6.1 has authentication credential disclosure |
| CVE-2013-2103 | HIGH | 8.1 | 1.0% | Dec 3, 2019 | OpenShift cartridge allows remote URL retrieval |
| CVE-2013-2101 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | Katello has multiple XSS issues in various entities |
| CVE-2013-4410 | HIGH | 7.5 | 2.4% | Dec 2, 2019 | ReviewBoard: has an access-control problem in REST API |
| CVE-2013-7484 | HIGH | 7.5 | 1.2% | Nov 30, 2019 | Zabbix before 5.0 represents passwords in the users table with unsalted MD5. |
| CVE-2013-2625 | MEDIUM | 6.5 | 1.3% | Nov 27, 2019 | An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0... |
| CVE-2013-4224 | — | — | — | Nov 25, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4187. Reason: This candidate is a duplicate of C... |
| CVE-2013-6879 | MEDIUM | 5.3 | 1.1% | Nov 22, 2019 | The Mijosoft MijoSearch component 2.0.1 and earlier for Joomla! allows remote attackers to obtain sensitive information ... |
| CVE-2013-6878 | MEDIUM | 6.1 | 0.8% | Nov 22, 2019 | Cross-site scripting (XSS) vulnerability in the Mijosoft MijoSearch component 2.0.4 and earlier for Joomla! allows remot... |
| CVE-2013-6239 | MEDIUM | 6.1 | 1.4% | Nov 22, 2019 | Cross-site scripting (XSS) vulnerability in the photo gallery model in Exis Contexis before 2.0 allows remote attackers ... |
| CVE-2013-6234 | HIGH | 8 | 6.7% | Nov 22, 2019 | Unrestricted file upload vulnerability in the Worksheet designer in SpagoBI before 4.1 allows remote authenticated users... |
| CVE-2013-0203 | MEDIUM | 5.4 | 0.7% | Nov 22, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.5, 4.0.10, and earlier allow remote attackers to inj... |
| CVE-2013-6880 | MEDIUM | 6.1 | 1.4% | Nov 22, 2019 | Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to arbitrary web sites an... |
| CVE-2013-6811 | HIGH | 8.8 | 1.0% | Nov 22, 2019 | Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attack... |
| CVE-2013-3314 | HIGH | 7.5 | 7.1% | Nov 21, 2019 | The Loftek Nexus 543 IP Camera allows remote attackers to obtain (1) IP addresses via a request to get_realip.cgi or (2)... |
| CVE-2013-3313 | HIGH | 7.5 | 2.6% | Nov 21, 2019 | The Loftek Nexus 543 IP Camera stores passwords in cleartext, which allows remote attackers to obtain sensitive informat... |
| CVE-2013-3312 | HIGH | 8.8 | 0.9% | Nov 21, 2019 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Loftek Nexus 543 IP Camera allow remote attackers to h... |
| CVE-2013-3311 | HIGH | 7.5 | 3.7% | Nov 21, 2019 | Directory traversal vulnerability in the Loftek Nexus 543 IP Camera allows remote attackers to read arbitrary files via ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now