2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2274 | — | — | 2.9% | Mar 20, 2013 | Puppet 2.6.x before 2.6.18 and Puppet Enterprise 1.2.x before 1.2.7 allows remote authenticated users to execute arbitra... |
| CVE-2013-1655 | — | — | 4.6% | Mar 20, 2013 | Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, when running Ruby 1.9.3 or later, allows remote attackers to execute ... |
| CVE-2013-1654 | — | — | 2.9% | Mar 20, 2013 | Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, and Puppet Enterprise 2.7.x before 2.7.2, does not properly negotiate... |
| CVE-2013-1653 | — | — | 5.4% | Mar 20, 2013 | Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2... |
| CVE-2013-1652 | — | — | 1.9% | Mar 20, 2013 | Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2... |
| CVE-2013-1640 | — | — | 4.9% | Mar 20, 2013 | The (1) template and (2) inline_template functions in the master server in Puppet before 2.6.18, 2.7.x before 2.7.21, an... |
| CVE-2013-1843 | — | — | 2.4% | Mar 20, 2013 | Open redirect vulnerability in the Access tracking mechanism in TYPO3 4.5.x before 4.5.24, 4.6.x before 4.6.17, 4.7.x be... |
| CVE-2013-1842 | — | — | 3.1% | Mar 20, 2013 | SQL injection vulnerability in the Extbase Framework in TYPO3 4.5.x before 4.5.24, 4.6.x before 4.6.17, 4.7.x before 4.7... |
| CVE-2013-1766 | — | — | 0.4% | Mar 20, 2013 | libvirt 1.0.2 and earlier sets the group owner to kvm for device files, which allows local users to write to these files... |
| CVE-2013-0332 | — | — | 10.2% | Mar 20, 2013 | Multiple directory traversal vulnerabilities in ZoneMinder 1.24.x before 1.24.4 allow remote attackers to read arbitrary... |
| CVE-2013-0232 | — | — | 47.9% | Mar 20, 2013 | includes/functions.php in ZoneMinder Video Server 1.24.0, 1.25.0, and earlier allows remote attackers to execute arbitra... |
| CVE-2013-0981 | — | — | 0.4% | Mar 20, 2013 | The IOUSBDeviceFamily driver in the USB implementation in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1... |
| CVE-2013-0980 | — | — | 0.4% | Mar 20, 2013 | The Passcode Lock implementation in Apple iOS before 6.1.3 does not properly manage the lock state, which allows physica... |
| CVE-2013-0979 | — | — | 0.3% | Mar 20, 2013 | lockdownd in Lockdown in Apple iOS before 6.1.3 does not properly consider file types during the permission-setting step... |
| CVE-2013-0978 | — | — | 0.4% | Mar 20, 2013 | The ARM prefetch abort handler in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not ensure that it... |
| CVE-2013-0977 | — | — | 0.4% | Mar 20, 2013 | dyld in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not properly manage the state of file loading for Mach-O e... |
| CVE-2013-1857 | — | — | 1.9% | Mar 19, 2013 | The sanitize helper in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby ... |
| CVE-2013-1856 | — | — | 2.1% | Mar 19, 2013 | The ActiveSupport::XmlMini_JDOM backend in lib/active_support/xml_mini/jdom.rb in the Active Support component in Ruby o... |
| CVE-2013-1855 | — | — | 2.6% | Mar 19, 2013 | The sanitize_css method in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in R... |
| CVE-2013-1854 | — | — | 3.4% | Mar 19, 2013 | The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes... |
| CVE-2013-0717 | — | — | 1.0% | Mar 19, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, ... |
| CVE-2013-0506 | — | — | 1.1% | Mar 19, 2013 | Cross-site scripting (XSS) vulnerability in IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before ... |
| CVE-2013-0505 | — | — | 1.1% | Mar 19, 2013 | IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before HF69, 9.1.0 before FP41, and 9.2.0 before FP... |
| CVE-2013-1863 | — | — | 2.2% | Mar 19, 2013 | Samba 4.x before 4.0.4, when configured as an Active Directory domain controller, uses world-writable permissions on non... |
| CVE-2013-2263 | — | — | 1.4% | Mar 19, 2013 | Unspecified vulnerability in Citrix Access Gateway Standard Edition 5.0.x before 5.0.4.223524 allows remote attackers to... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now