2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1860 | — | — | 0.8% | Mar 22, 2013 | Heap-based buffer overflow in the wdm_in_callback function in drivers/usb/class/cdc-wdm.c in the Linux kernel before 3.8... |
| CVE-2013-1848 | — | — | 0.6% | Mar 22, 2013 | fs/ext3/super.c in the Linux kernel before 3.8.4 uses incorrect arguments to functions in certain circumstances related ... |
| CVE-2013-1828 | — | — | 1.0% | Mar 22, 2013 | The sctp_getsockopt_assoc_stats function in net/sctp/socket.c in the Linux kernel before 3.8.4 does not validate a size ... |
| CVE-2013-1827 | — | — | 0.5% | Mar 22, 2013 | net/dccp/ccid.h in the Linux kernel before 3.5.4 allows local users to gain privileges or cause a denial of service (NUL... |
| CVE-2013-1826 | — | — | 0.5% | Mar 22, 2013 | The xfrm_state_netlink function in net/xfrm/xfrm_user.c in the Linux kernel before 3.5.7 does not properly handle error ... |
| CVE-2013-1798 | — | — | 1.4% | Mar 22, 2013 | The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a cert... |
| CVE-2013-1797 | — | — | 0.9% | Mar 22, 2013 | Use-after-free vulnerability in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 allows guest OS users to cause a de... |
| CVE-2013-1796 | — | — | 0.9% | Mar 22, 2013 | The kvm_set_msr_common function in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 does not ensure a required time_... |
| CVE-2013-1792 | — | — | 0.3% | Mar 22, 2013 | Race condition in the install_user_keyrings function in security/keys/process_keys.c in the Linux kernel before 3.8.3 al... |
| CVE-2013-0914 | — | — | 0.5% | Mar 22, 2013 | The flush_signal_handlers function in kernel/signal.c in the Linux kernel before 3.8.4 preserves the value of the sa_res... |
| CVE-2013-2633 | — | — | 1.0% | Mar 21, 2013 | Piwik before 1.11 accepts input from a POST request instead of a GET request in unspecified circumstances, which might a... |
| CVE-2013-2632 | — | — | 1.1% | Mar 21, 2013 | Google V8 before 3.17.13, as used in Google Chrome before 27.0.1444.3, allows remote attackers to cause a denial of serv... |
| CVE-2013-1844 | — | — | 0.9% | Mar 21, 2013 | Cross-site scripting (XSS) vulnerability in Piwik before 1.11 allows remote attackers to inject arbitrary web script or ... |
| CVE-2013-0124 | — | — | 1.1% | Mar 21, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in ASKIA askiaweb allow remote attac... |
| CVE-2013-0123 | — | — | 1.5% | Mar 21, 2013 | Multiple SQL injection vulnerabilities in the administration interface in ASKIA askiaweb allow remote attackers to execu... |
| CVE-2013-0453 | — | — | 0.9% | Mar 21, 2013 | Cross-site scripting (XSS) vulnerability in Web Reports in IBM Tivoli Endpoint Manager (TEM) before 8.2.1372 allows remo... |
| CVE-2013-0126 | — | — | 2.9% | Mar 21, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I rout... |
| CVE-2013-2279 | — | — | 1.5% | Mar 21, 2013 | CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and... |
| CVE-2013-1427 | — | — | 0.3% | Mar 21, 2013 | The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file ... |
| CVE-2013-1052 | — | — | 0.5% | Mar 21, 2013 | pam-xdg-support, as used in Ubuntu 12.10, does not properly handle the PATH environment variable, which allows local use... |
| CVE-2013-1051 | — | — | 1.3% | Mar 21, 2013 | apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle ... |
| CVE-2013-0287 | — | — | 2.2% | Mar 21, 2013 | The Simple Access Provider in System Security Services Daemon (SSSD) 1.9.0 through 1.9.4, when the Active Directory prov... |
| CVE-2013-0679 | — | — | 2.3% | Mar 21, 2013 | Directory traversal vulnerability in the web server in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 ... |
| CVE-2013-0678 | — | — | 1.5% | Mar 21, 2013 | Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly represent WebNavi... |
| CVE-2013-0677 | — | — | 1.9% | Mar 21, 2013 | The web server in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote att... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now