2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1081 | — | — | 68.1% | Mar 11, 2013 | Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote at... |
| CVE-2013-2503 | — | — | 4.6% | Mar 11, 2013 | Privoxy before 3.0.21 does not properly handle Proxy-Authenticate and Proxy-Authorization headers in the client-server d... |
| CVE-2013-1627 | — | — | 3.4% | Mar 11, 2013 | Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and... |
| CVE-2013-2557 | — | — | 10.9% | Mar 11, 2013 | The sandbox protection mechanism in Microsoft Internet Explorer 9 allows remote attackers to cause a denial of service (... |
| CVE-2013-2556 | — | — | 7.6% | Mar 11, 2013 | Unspecified vulnerability in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 through SP1 ... |
| CVE-2013-2555 | — | — | 8.5% | Mar 11, 2013 | Integer overflow in Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 1... |
| CVE-2013-2554 | — | — | 4.1% | Mar 11, 2013 | Unspecified vulnerability in Microsoft Windows 7 allows attackers to bypass the ASLR and DEP protection mechanisms via u... |
| CVE-2013-2553 | — | — | 1.7% | Mar 11, 2013 | Unspecified vulnerability in the kernel in Microsoft Windows 7 allows local users to gain privileges via unknown vectors... |
| CVE-2013-2552 | — | — | 14.4% | Mar 11, 2013 | Unspecified vulnerability in Microsoft Internet Explorer 10 on Windows 8 allows remote attackers to bypass the sandbox p... |
| CVE-2013-2550 | — | — | 4.4% | Mar 11, 2013 | Unspecified vulnerability in Adobe Reader 11.0.02 allows attackers to bypass the sandbox protection mechanism via unknow... |
| CVE-2013-2549 | — | — | 6.4% | Mar 11, 2013 | Unspecified vulnerability in Adobe Reader 11.0.02 allows remote attackers to execute arbitrary code via vectors related ... |
| CVE-2013-0912 | — | — | 4.3% | Mar 11, 2013 | WebKit in Google Chrome before 25.0.1364.160 allows remote attackers to execute arbitrary code via vectors that leverage... |
| CVE-2013-0787 | — | — | 6.4% | Mar 11, 2013 | Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla F... |
| CVE-2013-2496 | — | — | 1.4% | Mar 9, 2013 | The msrle_decode_8_16_24_32 function in msrledec.c in libavcodec in FFmpeg through 1.1.3 does not properly determine cer... |
| CVE-2013-2495 | — | — | 1.4% | Mar 9, 2013 | The iff_read_header function in iff.c in libavformat in FFmpeg through 1.1.3 does not properly handle data sizes for Int... |
| CVE-2013-1050 | — | — | 0.4% | Mar 8, 2013 | The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in ... |
| CVE-2013-0249 | — | — | 22.9% | Mar 8, 2013 | Stack-based buffer overflow in the Curl_sasl_create_digest_md5_message function in lib/curl_sasl.c in curl and libcurl 7... |
| CVE-2013-0308 | — | — | 1.7% | Mar 8, 2013 | The imap-send command in GIT before 1.8.1.4 does not verify that the server hostname matches a domain name in the subjec... |
| CVE-2013-2506 | — | — | 1.3% | Mar 8, 2013 | app/models/spree/user.rb in spree_auth_devise in Spree 1.1.x before 1.1.6, 1.2.x, and 1.3.x does not perform mass assign... |
| CVE-2013-1762 | — | — | 2.9% | Mar 8, 2013 | stunnel 4.21 through 4.54, when CONNECT protocol negotiation and NTLM authentication are enabled, does not correctly per... |
| CVE-2013-1656 | — | — | 1.5% | Mar 8, 2013 | Spree Commerce 1.0.x through 1.3.2 allows remote authenticated administrators to instantiate arbitrary Ruby objects and ... |
| CVE-2013-1491 | — | — | 16.4% | Mar 8, 2013 | The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, 5.0 Upd... |
| CVE-2013-1488 | — | — | 87.0% | Mar 8, 2013 | The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows remo... |
| CVE-2013-0402 | — | — | 9.6% | Mar 8, 2013 | Heap-based buffer overflow in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and... |
| CVE-2013-0401 | — | — | 10.2% | Mar 8, 2013 | The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now