2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-0323Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.1 f...
CVE-2013-0322Cross-site scripting (XSS) vulnerability in Views in the Ubercart module 7.x-3.x before 7.x-3.4 for Drupal allows remote...
CVE-2013-0321Cross-site scripting (XSS) vulnerability in Views in the Ubercart Views (uc_views) module 6.x before 6.x-3.3 for Drupal ...
CVE-2013-0320Cross-site request forgery (CSRF) vulnerability in the Taxonomy Manager (taxonomy_manager) module 6.x-2.x before 6.x-2.2...
CVE-2013-0319Cross-site scripting (XSS) vulnerability in the Yandex.Metrics module 6.x-1.x before 6.x-1.6 and 7.x-1.x before 7.x-1.5 ...
CVE-2013-0318The admin page in the Banckle Chat module for Drupal does not properly restrict access, which allows remote attackers to...
CVE-2013-0317Cross-site scripting (XSS) vulnerability in the Manager Change for Organic Groups (og_manager_change) module 7.x-2.x bef...
CVE-2013-0316The Image module in Drupal 7.x before 7.20 allows remote attackers to cause a denial of service (CPU and disk space cons...
CVE-2013-0260Unspecified vulnerability in the Drush Debian Packaging module for Drupal allows local users to obtain database credenti...
CVE-2013-0259Cross-site scripting (XSS) vulnerability in the Boxes module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticat...
CVE-2013-0258The Google Authenticator login (ga_login) module 7.x before 7.x-1.3 for Drupal, when multi-factor authentication is enab...
CVE-2013-0257The email2image module 6.x-1.x and 6.x-2.x for Drupal does not properly restrict access to nodes, which allows remote at...
CVE-2013-0182The Payment module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict access to payments, which allows remote ...
CVE-2013-0181Cross-site scripting (XSS) vulnerability in Views in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupa...
CVE-2013-2300The FlickWnn (aka OpenWnn/Flick support) application 2.02 and earlier for Android uses weak permissions for unspecified ...
CVE-2013-0720The COBIME application before 0.9.4 for Android uses weak permissions for unspecified files, which allows attackers to o...
CVE-2013-0719The ArtIME Japanese Input application 1.1.2 and earlier for Android uses weak permissions for unspecified files, which a...
CVE-2013-0718The Simeji application 4.8.1 and earlier for Android uses weak permissions for unspecified files, which allows attackers...
CVE-2013-0489Cross-site request forgery (CSRF) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x a...
CVE-2013-0488Cross-site scripting (XSS) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows r...
CVE-2013-0487The Java Console in IBM Domino 8.5.x allows remote authenticated users to hijack temporary credentials by leveraging kno...
CVE-2013-0486Memory leak in the HTTP server in IBM Domino 8.5.x allows remote attackers to cause a denial of service (memory consumpt...
CVE-2013-0525Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes 8.5.x allow local users to inject arbitrary web script...
CVE-2013-0454The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1....
CVE-2013-1609HIGH7.8Multiple unquoted Windows search path vulnerabilities in the (1) File Collector and (2) File PlaceHolder services in Sym...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now