2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-1666CRITICAL9.8Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro.
CVE-2013-4751HIGH8.1php-symfony2-Validator has loss of information during serialization
CVE-2013-3718MEDIUM5.5evince is missing a check on number of pages which can lead to a segmentation fault
CVE-2013-2739CRITICAL9.8MiniDLNA has heap-based buffer overflow
CVE-2013-2738CRITICAL9.8minidlna has SQL Injection that may allow retrieval of arbitrary files
CVE-2013-2600HIGH7.5MiniUPnPd has information disclosure use of snprintf()
CVE-2013-2075HIGH8.8Multiple buffer overflows in the (1) R5RS char-ready, (2) tcp-accept-ready, and (3) file-select procedures in Chicken th...
CVE-2013-2024HIGH8.8OS command injection vulnerability in the "qs" procedure from the "utils" module in Chicken before 4.9.0.
CVE-2013-2012HIGH7.3autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current ...
CVE-2013-1951MEDIUM6.1A cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.5 and 1.20.x before 1.20.4 and allows remote attacke...
CVE-2013-1945LOW3.3ruby193 uses an insecure LD_LIBRARY_PATH setting.
CVE-2013-1934MEDIUM5.4A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.0rc1...
CVE-2013-1932MEDIUM5.4A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 a...
CVE-2013-1931MEDIUM6.1A cross-site scripting (XSS) vulnerability in MantisBT 1.2.14 allows remote attackers to inject arbitrary web script or ...
CVE-2013-1930MEDIUM4.3MantisBT 1.2.12 before 1.2.15 allows authenticated users to by the workflow restriction and close issues.
CVE-2013-1910CRITICAL9.8yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other...
CVE-2013-1391HIGH7.5Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Wel...
CVE-2013-4848HIGH8.8TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.
CVE-2013-4658CRITICAL9.8Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.
CVE-2013-4857CRITICAL9.8D-Link DIR-865L has PHP File Inclusion in the router xml file.
CVE-2013-4856MEDIUM6.5D-Link DIR-865L has Information Disclosure.
CVE-2013-4855HIGH8.8D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be creat...
CVE-2013-7333HIGH7.5A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to th...
CVE-2013-7483The slidedeck2 plugin before 2.3.5 for WordPress has file inclusion.
CVE-2013-7482The reflex-gallery plugin before 1.4.3 for WordPress has XSS.

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now