2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3637 | MEDIUM | 5.4 | 0.6% | Feb 7, 2020 | ProjectPier 0.8.8 does not use the Secure flag for cookies |
| CVE-2013-3636 | MEDIUM | 5.4 | 1.0% | Feb 7, 2020 | ProjectPier 0.8.8 has a Remote Information Disclosure Weakness because of the lack of the HttpOnly cookie flag |
| CVE-2013-3635 | MEDIUM | 5.4 | 0.6% | Feb 7, 2020 | ProjectPier 0.8.8 has stored XSS |
| CVE-2013-2008 | MEDIUM | 6.1 | 1.5% | Feb 7, 2020 | WordPress Super Cache Plugin 1.3 has XSS. |
| CVE-2013-0192 | MEDIUM | 4.9 | 3.8% | Feb 7, 2020 | File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config. |
| CVE-2013-3564 | MEDIUM | 5.3 | 1.1% | Feb 6, 2020 | The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view ... |
| CVE-2013-2684 | MEDIUM | 6.1 | 3.7% | Feb 6, 2020 | Cross-site Scripting (XSS) in Cisco Linksys E4200 1.0.05 Build 7 devices allows remote attackers to inject arbitrary web... |
| CVE-2013-2683 | MEDIUM | 5.3 | 13.4% | Feb 6, 2020 | Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers... |
| CVE-2013-2682 | MEDIUM | 4.3 | 6.3% | Feb 5, 2020 | Cisco Linksys E4200 1.0.05 Build 7 devices contain a Clickjacking Vulnerability which allows remote attackers to obtain ... |
| CVE-2013-2675 | MEDIUM | 6.5 | 2.2% | Feb 5, 2020 | Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could a... |
| CVE-2013-7054 | MEDIUM | 6.1 | 3.5% | Feb 4, 2020 | D-Link DIR-100 4.03B07: cli.cgi XSS |
| CVE-2013-1422 | MEDIUM | 5.3 | 1.6% | Feb 4, 2020 | webcalendar before 1.2.7 shows the reason for a failed login (e.g., "no such user"). |
| CVE-2013-2673 | MEDIUM | 6.8 | 0.5% | Feb 3, 2020 | Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate at... |
| CVE-2013-2631 | MEDIUM | 5.3 | 1.8% | Feb 3, 2020 | TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to ob... |
| CVE-2013-2624 | MEDIUM | 5.3 | 6.5% | Feb 3, 2020 | Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive... |
| CVE-2013-2623 | MEDIUM | 6.1 | 2.8% | Feb 3, 2020 | Cross-site Scripting (XSS) in Telaen before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the... |
| CVE-2013-2622 | MEDIUM | 6.1 | 1.0% | Feb 3, 2020 | Cross-site Scripting (XSS) in UebiMiau 2.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2013-2621 | MEDIUM | 6.1 | 10.7% | Feb 3, 2020 | Open Redirection Vulnerability in the redir.php script in Telaen before 1.3.1 allows remote attackers to redirect victim... |
| CVE-2013-3565 | MEDIUM | 6.1 | 1.6% | Jan 31, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interface in VideoLAN VLC Media Player before 2.0.7 allo... |
| CVE-2013-5114 | MEDIUM | 6.1 | 0.6% | Jan 31, 2020 | LastPass prior to 2.5.1 allows secure wipe bypass. |
| CVE-2013-5113 | MEDIUM | 6.8 | 0.6% | Jan 31, 2020 | LastPass prior to 2.5.1 has an insecure PIN implementation. |
| CVE-2013-5112 | MEDIUM | 4.6 | 0.5% | Jan 31, 2020 | Evernote before 5.5.1 has insecure PIN storage |
| CVE-2013-4241 | MEDIUM | 6.1 | 3.7% | Jan 30, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in the HMS Testimonials plugin before 2.0.11 for WordPress allow rem... |
| CVE-2013-4187 | MEDIUM | 6.5 | 1.5% | Jan 30, 2020 | The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote auth... |
| CVE-2013-2294 | MEDIUM | 6.1 | 4.0% | Jan 30, 2020 | Multiple cross-site scripting (XSS) vulnerabilities in ViewGit before 0.0.7 allow remote repository users to inject arbi... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now