2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-1230Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a...
CVE-2013-1229TMSSNMPService.exe in TelePresence Manager in Cisco TelePresence Management Suite (TMS) on 64-bit platforms allows remot...
CVE-2013-1160Cross-site scripting (XSS) vulnerability in the OpenView web menus in Cisco Prime Central for Hosted Collaboration Solut...
CVE-2013-1159Cross-site scripting (XSS) vulnerability in the Netcool Impact (NCI) web menus in Cisco Prime Central for Hosted Collabo...
CVE-2013-1158Cross-site scripting (XSS) vulnerability in the IBM Tivoli Monitoring (ITM) help menus in Cisco Prime Central for Hosted...
CVE-2013-1157Cross-site scripting (XSS) vulnerability in the IBM Tivoli Monitoring (ITM) Java servlet container in Cisco Prime Centra...
CVE-2013-1156Directory traversal vulnerability in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to re...
CVE-2013-0699The Galil RIO-47100 Pocket PLC allows remote attackers to cause a denial of service via a session that includes "repeate...
CVE-2013-0673Directory traversal vulnerability in the web interface in the Health Monitor service in MatrikonOPC A&E Historian 1.0.0....
CVE-2013-0666The configuration utility in MatrikonOPC Security Gateway 1.0 allows remote attackers to cause a denial of service (unha...
CVE-2013-0538Cross-site scripting (XSS) vulnerability in IBM Lotus Notes 8.x before 8.5.3 FP4 Interim Fix 1 and 9.0 before Interim Fi...
CVE-2013-0141Directory traversal vulnerability in McAfee ePolicy Orchestrator (ePO) before 4.5.7 and 4.6.x before 4.6.6 allows remote...
CVE-2013-0140SQL injection vulnerability in the Agent-Handler component in McAfee ePolicy Orchestrator (ePO) before 4.5.7 and 4.6.x b...
CVE-2013-0127IBM Lotus Notes 8.x before 8.5.3 FP4 Interim Fix 1 and 9.0 before Interim Fix 1 does not block APPLET elements in HTML e...
CVE-2013-1944The tailMatch function in cookie.c in cURL and libcurl before 7.30.0 does not properly match the path domain when sendin...
CVE-2013-1927The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a craft...
CVE-2013-1926The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class loader for applets with the same codebase...
CVE-2013-1914Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or li...
CVE-2013-1196The command-line interface in Cisco Secure Access Control System (ACS), Identity Services Engine Software, Context Direc...
CVE-2013-3302Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users ...
CVE-2013-3301The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer...
CVE-2013-2015The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel before 3.7.3 does not properly handle orphan-list en...
CVE-2013-1928The do_video_set_spu_palette function in fs/compat_ioctl.c in the Linux kernel before 3.6.5 on unspecified architectures...
CVE-2013-1227Cross-site scripting (XSS) vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remo...
CVE-2013-1226The Ethernet frame-forwarding implementation in Cisco NX-OS on Nexus 7000 devices allows remote attackers to cause a den...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now