2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-0459 | — | — | 1.8% | Jan 27, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2013-0458 | — | — | 1.8% | Jan 27, 2013 | Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 bef... |
| CVE-2013-0107 | — | — | 3.9% | Jan 26, 2013 | Stack-based buffer overflow in Foxit Advanced PDF Editor 3 before 3.04 might allow remote attackers to execute arbitrary... |
| CVE-2013-0743 | — | — | — | Jan 25, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA a... |
| CVE-2013-1105 | — | — | 3.1% | Jan 24, 2013 | Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.3, 7.1 and 7.2 before 7.2.111.3, and 7.3 be... |
| CVE-2013-1104 | — | — | 3.7% | Jan 24, 2013 | The HTTP Profiling functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.3.101.0 allows remote au... |
| CVE-2013-1103 | — | — | 1.8% | Jan 24, 2013 | Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.... |
| CVE-2013-1102 | — | — | 1.8% | Jan 24, 2013 | The Wireless Intrusion Prevention System (wIPS) component on Cisco Wireless LAN Controller (WLC) devices with software 7... |
| CVE-2013-0843 | — | — | 1.3% | Jan 24, 2013 | content/renderer/media/webrtc_audio_renderer.cc in Google Chrome before 24.0.1312.56 on Mac OS X does not use an appropr... |
| CVE-2013-0842 | — | — | 1.0% | Jan 24, 2013 | Google Chrome before 24.0.1312.56 does not properly handle %00 characters in pathnames, which has unspecified impact and... |
| CVE-2013-0841 | — | — | 1.1% | Jan 24, 2013 | Array index error in the content-blocking functionality in Google Chrome before 24.0.1312.56 allows remote attackers to ... |
| CVE-2013-0840 | — | — | 1.0% | Jan 24, 2013 | Google Chrome before 24.0.1312.56 does not validate URLs during the opening of new windows, which has unspecified impact... |
| CVE-2013-0839 | — | — | 1.1% | Jan 24, 2013 | Use-after-free vulnerability in Google Chrome before 24.0.1312.56 allows remote attackers to cause a denial of service o... |
| CVE-2013-0209 | — | — | 45.2% | Jan 23, 2013 | lib/MT/Upgrade.pm in mt-upgrade.cgi in Movable Type 4.2x and 4.3x through 4.38 does not require authentication for reque... |
| CVE-2013-1110 | — | — | 1.7% | Jan 21, 2013 | Cisco WebEx Training Center allow remote authenticated users to bypass intended privilege restrictions and (1) enable or... |
| CVE-2013-1108 | — | — | 1.2% | Jan 21, 2013 | Cisco WebEx Training Center allows remote authenticated users to remove hands-on lab-session reservations via a crafted ... |
| CVE-2013-0929 | — | — | 3.4% | Jan 21, 2013 | Format string vulnerability in the _vsnsprintf function in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before... |
| CVE-2013-0928 | — | — | 34.5% | Jan 21, 2013 | The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote... |
| CVE-2013-0656 | — | — | 2.7% | Jan 21, 2013 | Buffer overflow in a third-party ActiveX component in Siemens SIMATIC RF-MANAGER 2008, and RF-MANAGER Basic 3.0 and earl... |
| CVE-2013-0657 | — | — | 21.3% | Jan 21, 2013 | Stack-based buffer overflow in Schneider Electric Interactive Graphical SCADA System (IGSS) 10 and earlier allows remote... |
| CVE-2013-0655 | — | — | 2.9% | Jan 21, 2013 | The client in Schneider Electric Software Update (SESU) Utility 1.0.x and 1.1.x does not ensure that updates have a vali... |
| CVE-2013-0172 | — | — | 2.4% | Jan 17, 2013 | Samba 4.0.x before 4.0.1, in certain Active Directory domain-controller configurations, does not properly interpret Acce... |
| CVE-2013-1109 | — | — | 0.6% | Jan 17, 2013 | Cross-site request forgery (CSRF) vulnerability in testingLibraryAction.do in the Training Center testing library in Cis... |
| CVE-2013-0420 | — | — | 0.4% | Jan 17, 2013 | Unspecified vulnerability in the VirtualBox component in Oracle Virtualization 4.0, 4.1, and 4.2 allows local users to a... |
| CVE-2013-0418 | — | — | 8.3% | Jan 17, 2013 | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7 and 8.4 allows... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now