2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-7172 | HIGH | 7.8 | 0.5% | Nov 21, 2019 | Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within ... |
| CVE-2013-7171 | CRITICAL | 9.8 | 6.3% | Nov 21, 2019 | Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp di... |
| CVE-2013-2093 | CRITICAL | 9.8 | 5.2% | Nov 20, 2019 | Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote at... |
| CVE-2013-2092 | MEDIUM | 6.1 | 1.3% | Nov 20, 2019 | Cross-site Scripting (XSS) in Dolibarr ERP/CRM 3.3.1 allows remote attackers to inject arbitrary web script or HTML in f... |
| CVE-2013-2091 | CRITICAL | 9.8 | 2.5% | Nov 20, 2019 | SQL injection vulnerability in Dolibarr ERP/CRM 3.3.1 allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2013-1817 | HIGH | 7.5 | 2.5% | Nov 20, 2019 | MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers t... |
| CVE-2013-1816 | HIGH | 7.5 | 2.7% | Nov 20, 2019 | MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash... |
| CVE-2013-0195 | MEDIUM | 6.1 | 1.2% | Nov 20, 2019 | Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via uns... |
| CVE-2013-0194 | MEDIUM | 6.1 | 1.2% | Nov 20, 2019 | Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via uns... |
| CVE-2013-0193 | MEDIUM | 6.1 | 1.2% | Nov 20, 2019 | Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via uns... |
| CVE-2013-7089 | HIGH | 7.5 | 1.9% | Nov 15, 2019 | ClamAV before 0.97.7: dbg_printhex possible information leak |
| CVE-2013-7088 | CRITICAL | 9.8 | 3.1% | Nov 15, 2019 | ClamAV before 0.97.7 has buffer overflow in the libclamav component |
| CVE-2013-7087 | CRITICAL | 9.8 | 2.9% | Nov 15, 2019 | ClamAV before 0.97.7 has WWPack corrupt heap memory |
| CVE-2013-4584 | MEDIUM | 5.9 | 1.5% | Nov 15, 2019 | Perdition before 2.2 may have weak security when handling outbound connections, caused by an error in the STARTTLS IMAP ... |
| CVE-2013-4108 | CRITICAL | 9.8 | 1.5% | Nov 14, 2019 | Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors. |
| CVE-2013-4106 | MEDIUM | 6.1 | 1.5% | Nov 14, 2019 | A Cross-site scripting (XSS) vulnerability exists in Conversation Overview Nickname in Cryptocat before 2.0.22. |
| CVE-2013-4109 | MEDIUM | 6.1 | 1.7% | Nov 14, 2019 | An unspecified cross-site scripting (XSS) vulnerability exists in Cryptocat Message Handling 1.1.165. |
| CVE-2013-3072 | CRITICAL | 9.8 | 2.1% | Nov 14, 2019 | An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.... |
| CVE-2013-3070 | HIGH | 7.5 | 2.1% | Nov 14, 2019 | An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web inter... |
| CVE-2013-3073 | CRITICAL | 9.8 | 3.7% | Nov 14, 2019 | A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34. |
| CVE-2013-3366 | HIGH | 8.8 | 0.9% | Nov 13, 2019 | Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password... |
| CVE-2013-3097 | MEDIUM | 6.1 | 1.5% | Nov 13, 2019 | Unspecified Cross-site scripting (XSS) vulnerability in the Verizon FIOS Actiontec MI424WR-GEN3I router. |
| CVE-2013-4275 | MEDIUM | 5.4 | 1.0% | Nov 13, 2019 | Cross-site scripting (XSS) vulnerability in the zen_breadcrumb function in template.php in the Zen theme 6.x-1.x, 7.x-3.... |
| CVE-2013-3367 | CRITICAL | 9.8 | 2.7% | Nov 13, 2019 | Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML paramete... |
| CVE-2013-3516 | MEDIUM | 6.5 | 0.7% | Nov 13, 2019 | NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows att... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now