2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1666 | CRITICAL | 9.8 | 2.3% | Nov 1, 2019 | Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro. |
| CVE-2013-4751 | HIGH | 8.1 | 1.4% | Nov 1, 2019 | php-symfony2-Validator has loss of information during serialization |
| CVE-2013-3718 | MEDIUM | 5.5 | 1.1% | Nov 1, 2019 | evince is missing a check on number of pages which can lead to a segmentation fault |
| CVE-2013-2739 | CRITICAL | 9.8 | 4.7% | Nov 1, 2019 | MiniDLNA has heap-based buffer overflow |
| CVE-2013-2738 | CRITICAL | 9.8 | 2.2% | Nov 1, 2019 | minidlna has SQL Injection that may allow retrieval of arbitrary files |
| CVE-2013-2600 | HIGH | 7.5 | 2.3% | Nov 1, 2019 | MiniUPnPd has information disclosure use of snprintf() |
| CVE-2013-2075 | HIGH | 8.8 | 2.2% | Oct 31, 2019 | Multiple buffer overflows in the (1) R5RS char-ready, (2) tcp-accept-ready, and (3) file-select procedures in Chicken th... |
| CVE-2013-2024 | HIGH | 8.8 | 4.5% | Oct 31, 2019 | OS command injection vulnerability in the "qs" procedure from the "utils" module in Chicken before 4.9.0. |
| CVE-2013-2012 | HIGH | 7.3 | 0.4% | Oct 31, 2019 | autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current ... |
| CVE-2013-1951 | MEDIUM | 6.1 | 1.6% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.5 and 1.20.x before 1.20.4 and allows remote attacke... |
| CVE-2013-1945 | LOW | 3.3 | 0.3% | Oct 31, 2019 | ruby193 uses an insecure LD_LIBRARY_PATH setting. |
| CVE-2013-1934 | MEDIUM | 5.4 | 0.9% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.0rc1... |
| CVE-2013-1932 | MEDIUM | 5.4 | 1.0% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 a... |
| CVE-2013-1931 | MEDIUM | 6.1 | 2.3% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in MantisBT 1.2.14 allows remote attackers to inject arbitrary web script or ... |
| CVE-2013-1930 | MEDIUM | 4.3 | 1.2% | Oct 31, 2019 | MantisBT 1.2.12 before 1.2.15 allows authenticated users to by the workflow restriction and close issues. |
| CVE-2013-1910 | CRITICAL | 9.8 | 2.5% | Oct 31, 2019 | yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other... |
| CVE-2013-1391 | HIGH | 7.5 | 76.1% | Oct 30, 2019 | Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Wel... |
| CVE-2013-4848 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities. |
| CVE-2013-4658 | CRITICAL | 9.8 | 9.3% | Oct 25, 2019 | Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share. |
| CVE-2013-4857 | CRITICAL | 9.8 | 1.6% | Oct 25, 2019 | D-Link DIR-865L has PHP File Inclusion in the router xml file. |
| CVE-2013-4856 | MEDIUM | 6.5 | 0.8% | Oct 25, 2019 | D-Link DIR-865L has Information Disclosure. |
| CVE-2013-4855 | HIGH | 8.8 | 1.5% | Oct 25, 2019 | D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be creat... |
| CVE-2013-7333 | HIGH | 7.5 | 1.1% | Oct 23, 2019 | A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to th... |
| CVE-2013-7483 | — | — | 2.1% | Aug 22, 2019 | The slidedeck2 plugin before 2.3.5 for WordPress has file inclusion. |
| CVE-2013-7482 | — | — | 0.9% | Aug 22, 2019 | The reflex-gallery plugin before 1.4.3 for WordPress has XSS. |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now