2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-7462——A directory traversal vulnerability in the web application in McAfee (now Intel Security) SaaS Control Console (SCC) Pla...
CVE-2013-7461——A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change Control (MCC) 6.1.0 for Linu...
CVE-2013-7460——A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application Control (MAC) 6.1.0 for...
CVE-2013-4659——Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916. T...
CVE-2013-5653——The getenv and filenameforall functions in Ghostscript 9.10 ignore the "-dSAFER" argument, which allows remote attackers...
CVE-2013-7459——Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allo...
CVE-2013-7454——The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7453——The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7452——The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7451——The validator module before 1.1.0 for Node.js allows remote attackers to bypass the XSS filter via a nested tag.
CVE-2013-1430——An issue was discovered in xrdp before 0.9.1. When successfully logging in using RDP into an xrdp session, the file ~/.v...
CVE-2013-4119——FreeRDP before 1.1.0-beta+2013071101 allows remote attackers to cause a denial of service (NULL pointer dereference and ...
CVE-2013-4118——FreeRDP before 1.1.0-beta1 allows remote attackers to cause a denial of service (NULL pointer dereference and applicatio...
CVE-2013-7458——linenoise, as used in Redis before 3.2.3, uses world-readable permissions for .rediscli_history, which allows local user...
CVE-2013-7456——gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.1.1, as used in PHP before 5.5.36, 5.6.x before 5.6.2...
CVE-2013-7457——Unspecified vulnerability in the Qualcomm components in Android before 2016-07-05 allows attackers to gain privileges vi...
CVE-2013-7440——The ssl.match_hostname function in CPython (aka Python) before 2.7.9 and 3.x before 3.3.3 does not properly handle wildc...
CVE-2013-7455——Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allow...
CVE-2013-7449——The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the...
CVE-2013-7448——Directory traversal vulnerability in wiki.c in didiwiki allows remote attackers to read arbitrary files via the page par...
CVE-2013-7447——Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gno...
CVE-2013-4312——The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory ...
CVE-2013-7446——Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intende...
CVE-2013-5229——The Remote Desktop full-screen feature in Apple OS X before 10.9 and Apple Remote Desktop before 3.7 sends dialog-box te...
CVE-2013-7445——The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now