2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3517 | MEDIUM | 5.4 | 0.6% | Nov 13, 2019 | Cross-site scripting (XSS) vulnerability in NETGEAR WNR3500U and WNR3500L. |
| CVE-2013-4657 | CRITICAL | 9.8 | 1.9% | Nov 13, 2019 | Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service. |
| CVE-2013-4655 | HIGH | 7.5 | 1.9% | Nov 13, 2019 | Symlink Traversal vulnerability in Belkin N900 due to misconfiguration in the SMB service. |
| CVE-2013-4654 | CRITICAL | 9.8 | 2.7% | Nov 13, 2019 | Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND.. |
| CVE-2013-4656 | CRITICAL | 9.8 | 2.2% | Nov 13, 2019 | Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service. |
| CVE-2013-1889 | HIGH | 7.5 | 2.2% | Nov 8, 2019 | mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI ... |
| CVE-2013-1820 | MEDIUM | 5.5 | 0.4% | Nov 8, 2019 | tuned before 2.x allows local users to kill running processes due to insecure permissions with tuned's ktune service. |
| CVE-2013-1811 | MEDIUM | 4.3 | 1.0% | Nov 7, 2019 | An access control issue in MantisBT before 1.2.13 allows users with "Reporter" permissions to change any issue to "New". |
| CVE-2013-1809 | HIGH | 7.5 | 2.0% | Nov 7, 2019 | Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to t... |
| CVE-2013-1771 | HIGH | 7.5 | 3.0% | Nov 7, 2019 | The web server Monkeyd produces a world-readable log (/var/log/monkeyd/master.log) on gentoo. |
| CVE-2013-1751 | CRITICAL | 9.8 | 4.9% | Nov 7, 2019 | TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' param... |
| CVE-2013-1429 | MEDIUM | 6.3 | 1.3% | Nov 7, 2019 | Lintian before 2.5.12 allows remote attackers to gather information about the "host" system using crafted symlinks. |
| CVE-2013-1426 | MEDIUM | 6.1 | 1.0% | Nov 7, 2019 | Cross-site Scripting (XSS) in Mahara before 1.5.9 and 1.6.x before 1.6.4 allows remote attackers to inject arbitrary web... |
| CVE-2013-1425 | MEDIUM | 5.5 | 0.3% | Nov 7, 2019 | ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions. |
| CVE-2013-5123 | MEDIUM | 5.9 | 8.0% | Nov 5, 2019 | The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks wh... |
| CVE-2013-6275 | MEDIUM | 6.5 | 2.1% | Nov 5, 2019 | Multiple CSRF issues in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php. |
| CVE-2013-5661 | MEDIUM | 5.9 | 3.5% | Nov 5, 2019 | Cache Poisoning issue exists in DNS Response Rate Limiting. |
| CVE-2013-6461 | MEDIUM | 6.5 | 2.2% | Nov 5, 2019 | Nokogiri gem 1.5.x and 1.6.x has DoS while parsing XML entities by failing to apply limits |
| CVE-2013-6460 | MEDIUM | 6.5 | 2.1% | Nov 5, 2019 | Nokogiri gem 1.5.x has Denial of Service via infinite loop when parsing XML documents |
| CVE-2013-6365 | MEDIUM | 5.3 | 1.1% | Nov 5, 2019 | Horde Groupware Web mail 5.1.2 has CSRF with requests to change permissions |
| CVE-2013-6364 | HIGH | 8.8 | 2.1% | Nov 5, 2019 | Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book |
| CVE-2013-4110 | MEDIUM | 5.3 | 2.0% | Nov 5, 2019 | Cryptocat has an Unspecified Chat Participant User List Disclosure |
| CVE-2013-4107 | MEDIUM | 6.1 | 1.1% | Nov 5, 2019 | Cryptocat before 2.0.22: cryptocat.js handlePresence() has cross site scripting |
| CVE-2013-4374 | HIGH | 7.1 | 0.3% | Nov 4, 2019 | An insecurity temporary file vulnerability exists in RHQ Mongo DB Drift Server through 2013-09-25 when unpacking zipped ... |
| CVE-2013-4409 | CRITICAL | 9.8 | 3.0% | Nov 4, 2019 | An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now