2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1611 | — | — | 0.8% | May 9, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in administrative-interface pages in the management console in Syman... |
| CVE-2013-1225 | — | — | 1.6% | May 9, 2013 | Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to read arbitrary files vi... |
| CVE-2013-1224 | — | — | 2.1% | May 9, 2013 | Directory traversal vulnerability in the Resource Manager in Cisco Unified Customer Voice Portal (CVP) Software before 9... |
| CVE-2013-1223 | — | — | 1.5% | May 9, 2013 | The log viewer in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly validate an un... |
| CVE-2013-1222 | — | — | 1.2% | May 9, 2013 | The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not prop... |
| CVE-2013-1221 | — | — | 3.4% | May 9, 2013 | The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not prop... |
| CVE-2013-1220 | — | — | 1.3% | May 9, 2013 | The CallServer component in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attacker... |
| CVE-2013-0688 | — | — | 1.0% | May 9, 2013 | Cross-site scripting (XSS) vulnerability in Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.... |
| CVE-2013-0686 | — | — | 2.1% | May 9, 2013 | Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to read ar... |
| CVE-2013-0685 | — | — | 3.3% | May 9, 2013 | Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal does not restrict unspecified size... |
| CVE-2013-0684 | — | — | 1.3% | May 9, 2013 | SQL injection vulnerability in Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal all... |
| CVE-2013-0600 | — | — | 2.7% | May 9, 2013 | Unspecified vulnerability on IBM WebSphere DataPower XC10 Appliance devices 2.0 and 2.1 through 2.1 FP3 allows remote at... |
| CVE-2013-3498 | — | — | 1.8% | May 8, 2013 | Cross-site scripting (XSS) vulnerability in Juniper SmartPass WLAN Security Management before 7.7 MR3 and 8.0 before MR2... |
| CVE-2013-3497 | — | — | 0.3% | May 8, 2013 | Juniper Junos Space before 12.3P2.8, as used on the JA1500 appliance and in other contexts, includes a cleartext passwor... |
| CVE-2013-3513 | — | — | 0.7% | May 8, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Noma component in GroundWork Monitor Enterprise 6.7.0 ... |
| CVE-2013-3512 | — | — | 1.5% | May 8, 2013 | The Cacti component in GroundWork Monitor Enterprise 6.7.0 does not properly perform authorization checks, which allows ... |
| CVE-2013-3511 | — | — | 1.3% | May 8, 2013 | Open redirect vulnerability in the NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote attackers to redi... |
| CVE-2013-3510 | — | — | 1.3% | May 8, 2013 | Multiple SQL injection vulnerabilities in GroundWork Monitor Enterprise 6.7.0 allow remote authenticated users to execut... |
| CVE-2013-3509 | — | — | 1.9% | May 8, 2013 | html/System-NeDi.php in the NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to e... |
| CVE-2013-3508 | — | — | 2.0% | May 8, 2013 | html/System-Files.php in the System File Overview feature in the NeDi component in GroundWork Monitor Enterprise 6.7.0 a... |
| CVE-2013-3507 | — | — | 1.3% | May 8, 2013 | The NeDi component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to obtain sensitive informat... |
| CVE-2013-3506 | — | — | 2.5% | May 8, 2013 | cgi-bin/performance/perfchart.cgi in the Performance component in GroundWork Monitor Enterprise 6.7.0 does not properly ... |
| CVE-2013-3505 | — | — | 1.5% | May 8, 2013 | The Nagios-App component in GroundWork Monitor Enterprise 6.7.0 allows remote authenticated users to bypass intended acc... |
| CVE-2013-3504 | — | — | 1.9% | May 8, 2013 | Directory traversal vulnerability in monarch.cgi in the MONARCH component in GroundWork Monitor Enterprise 6.7.0 allows ... |
| CVE-2013-3503 | — | — | 1.2% | May 8, 2013 | The Profile Importer feature in monarch.cgi in the MONARCH component in GroundWork Monitor Enterprise 6.7.0 allows remot... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now