2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-7461A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change Control (MCC) 6.1.0 for Linu...
CVE-2013-7460A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application Control (MAC) 6.1.0 for...
CVE-2013-4659Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916. T...
CVE-2013-5653The getenv and filenameforall functions in Ghostscript 9.10 ignore the "-dSAFER" argument, which allows remote attackers...
CVE-2013-7459Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allo...
CVE-2013-7454The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7453The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7452The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter vi...
CVE-2013-7451The validator module before 1.1.0 for Node.js allows remote attackers to bypass the XSS filter via a nested tag.
CVE-2013-1430An issue was discovered in xrdp before 0.9.1. When successfully logging in using RDP into an xrdp session, the file ~/.v...
CVE-2013-4119FreeRDP before 1.1.0-beta+2013071101 allows remote attackers to cause a denial of service (NULL pointer dereference and ...
CVE-2013-4118FreeRDP before 1.1.0-beta1 allows remote attackers to cause a denial of service (NULL pointer dereference and applicatio...
CVE-2013-7458linenoise, as used in Redis before 3.2.3, uses world-readable permissions for .rediscli_history, which allows local user...
CVE-2013-7456gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.1.1, as used in PHP before 5.5.36, 5.6.x before 5.6.2...
CVE-2013-7457Unspecified vulnerability in the Qualcomm components in Android before 2016-07-05 allows attackers to gain privileges vi...
CVE-2013-7440The ssl.match_hostname function in CPython (aka Python) before 2.7.9 and 3.x before 3.3.3 does not properly handle wildc...
CVE-2013-7455Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allow...
CVE-2013-7449The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the...
CVE-2013-7448Directory traversal vulnerability in wiki.c in didiwiki allows remote attackers to read arbitrary files via the page par...
CVE-2013-7447Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gno...
CVE-2013-4312The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory ...
CVE-2013-7446Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intende...
CVE-2013-5229The Remote Desktop full-screen feature in Apple OS X before 10.9 and Apple Remote Desktop before 3.7 sends dialog-box te...
CVE-2013-7445The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution ...
CVE-2013-7444The Special:Contributions page in MediaWiki before 1.22.0 allows remote attackers to determine if an IP is autoblocked v...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now