2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2835 | — | — | 0.7% | Apr 16, 2013 | Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins,... |
| CVE-2013-2834 | — | — | 0.9% | Apr 16, 2013 | Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins,... |
| CVE-2013-2833 | — | — | 1.6% | Apr 16, 2013 | Use-after-free vulnerability in the O3D plug-in in Google Chrome OS before 26.0.1410.57 allows remote attackers to cause... |
| CVE-2013-2832 | — | — | 0.9% | Apr 16, 2013 | The Buffer::Set function in core/cross/buffer.cc in the O3D plug-in in Google Chrome OS before 26.0.1410.57 does not pre... |
| CVE-2013-2760 | — | — | 3.6% | Apr 16, 2013 | Buffer overflow in Groovy Media Player 3.2.0 allows remote attackers to execute arbitrary code via a long string in a .m... |
| CVE-2013-2304 | — | — | 0.9% | Apr 16, 2013 | The Sleipnir Mobile application 2.8.0 and earlier and Sleipnir Mobile Black Edition application 2.8.0 and earlier for An... |
| CVE-2013-2303 | — | — | 1.0% | Apr 16, 2013 | Sleipnir 4.0.0.4000 and earlier on Windows allows remote attackers to spoof the SSL lock icon and address-bar colors via... |
| CVE-2013-1937 | — | — | 4.7% | Apr 16, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in tbl_gis_visualization.php in phpMyAdmin 3.5.x before 3.5.8 might ... |
| CVE-2013-1197 | — | — | 1.1% | Apr 16, 2013 | The XML parser in the server in Cisco Unified Presence (CUP) allows remote authenticated users to cause a denial of serv... |
| CVE-2013-1193 | — | — | 1.2% | Apr 16, 2013 | The Secure Shell (SSH) implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Service... |
| CVE-2013-1187 | — | — | 1.2% | Apr 16, 2013 | The Connection Manager in Cisco Jabber Extensible Communications Platform (aka Jabber XCP) does not properly validate lo... |
| CVE-2013-3051 | — | — | 0.2% | Apr 13, 2013 | The TrustZone kernel, when used in conjunction with a certain Motorola build of Android 4.1.2, on Motorola Razr HD, Razr... |
| CVE-2013-2596 | HIGH | 7.8 | 3.4% | Apr 13, 2013 | Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain... |
| CVE-2013-3050 | — | — | 1.3% | Apr 12, 2013 | SQL injection vulnerability in ZAPms 1.41 and earlier allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2013-1920 | — | — | 0.4% | Apr 12, 2013 | Xen 4.2.x, 4.1.x, and earlier, when the hypervisor is running "under memory pressure" and the Xen Security Module (XSM) ... |
| CVE-2013-0315 | — | — | 1.4% | Apr 12, 2013 | The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 allows remote attackers to read arbitra... |
| CVE-2013-0314 | — | — | 1.6% | Apr 12, 2013 | The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication ... |
| CVE-2013-0282 | — | — | 1.7% | Apr 12, 2013 | OpenStack Keystone Grizzly before 2013.1, Folsom 2012.1.3 and earlier, and Essex does not properly check if the (1) user... |
| CVE-2013-0270 | MEDIUM | 6.5 | 3.1% | Apr 12, 2013 | A flaw was found in OpenStack Keystone. A remote attacker could exploit this vulnerability by sending a large HTTP reque... |
| CVE-2013-0501 | — | — | 1.5% | Apr 12, 2013 | The EdrawSoft EDOFFICE.EDOfficeCtrl.1 ActiveX control, as used in Edraw Office Viewer Component, the client in IBM Cogno... |
| CVE-2013-2779 | — | — | 2.0% | Apr 11, 2013 | Cisco IOS XE 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) doe... |
| CVE-2013-1189 | — | — | 0.6% | Apr 11, 2013 | Cisco Universal Broadband (aka uBR) 10000 series routers, when an IPv4/IPv6 dual-stack modem is used, allow remote attac... |
| CVE-2013-1173 | — | — | 0.3% | Apr 11, 2013 | Heap-based buffer overflow in ciscod.exe in the Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka A... |
| CVE-2013-1172 | — | — | 0.3% | Apr 11, 2013 | The Cisco Security Service in Cisco AnyConnect Secure Mobility Client (aka AnyConnect VPN Client) does not properly veri... |
| CVE-2013-1170 | — | — | 1.3% | Apr 11, 2013 | The Cisco Prime Network Control System (NCS) appliance with software before 1.1.1.24 has a default password for the data... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now