2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5465 | — | — | 1.2% | May 26, 2014 | IBM Maximo Asset Management 7.x before 7.1.1.7 LAFIX.20140319-0837, 7.1.1.11 before IFIX.20140323-0749, 7.1.1.12 before ... |
| CVE-2013-5464 | — | — | 1.1% | May 26, 2014 | IBM Maximo Asset Management 7.5.x before 7.5.0.3 IFIX027, 7.5.0.4 before IFIX011, and 7.5.0.5 before IFIX006 and SmartCl... |
| CVE-2013-5460 | — | — | 1.0% | May 26, 2014 | IBM Maximo Asset Management 7.x before 7.5.0.6 and SmartCloud Control Desk 7.x before 7.5.0.3 and 7.5.1.x before 7.5.1.2... |
| CVE-2013-4016 | — | — | 1.0% | May 26, 2014 | SQL injection vulnerability in IBM Maximo Asset Management 7.x before 7.1.1.7 LAFIX.20140319-0837, 7.1.1.11 before IFIX.... |
| CVE-2013-2998 | — | — | 1.0% | May 26, 2014 | frontcontroller.jsp in IBM Maximo Asset Management 7.x before 7.5.0.6 and SmartCloud Control Desk 7.x before 7.5.0.3 and... |
| CVE-2013-3984 | — | — | 0.7% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 does not set the secure flag for an unspe... |
| CVE-2013-3982 | — | — | 13.2% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to obtain unspeci... |
| CVE-2013-3981 | — | — | 1.7% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to download avata... |
| CVE-2013-3980 | — | — | 1.7% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to cause a denial... |
| CVE-2013-3977 | — | — | 9.0% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to determine whic... |
| CVE-2013-3975 | — | — | 13.2% | May 26, 2014 | Unspecified vulnerability in the Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remot... |
| CVE-2013-3046 | — | — | 0.4% | May 26, 2014 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 does not send the HSTS Strict-Transport-S... |
| CVE-2013-1191 | — | — | 1.9% | May 26, 2014 | Cisco NX-OS 6.1 before 6.1(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows rem... |
| CVE-2013-4223 | — | — | 1.3% | May 23, 2014 | The Gentoo Nullmailer package before 1.11-r2 uses world-readable permissions for /etc/nullmailer/remotes, which allows l... |
| CVE-2013-2758 | — | — | 6.5% | May 23, 2014 | Apache CloudStack 4.0.0 before 4.0.2 and Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C us... |
| CVE-2013-2757 | — | — | 2.7% | May 23, 2014 | Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C does not properly restrict access to VNC po... |
| CVE-2013-2756 | — | — | 5.8% | May 23, 2014 | Apache CloudStack 4.0.0 before 4.0.2 and Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C al... |
| CVE-2013-2713 | — | — | 1.4% | May 23, 2014 | Cross-site request forgery (CSRF) vulnerability in users_maint.html in KrisonAV CMS before 3.0.2 allows remote attackers... |
| CVE-2013-2712 | — | — | 1.8% | May 23, 2014 | Cross-site scripting (XSS) vulnerability in services/get_article.php in KrisonAV CMS before 3.0.2 allows remote attacker... |
| CVE-2013-1864 | — | — | 2.9% | May 23, 2014 | The Portable Tool Library (aka PTLib) before 2.10.10, as used in Ekiga before 4.0.1, does not properly detect recursion ... |
| CVE-2013-1668 | — | — | 7.0% | May 23, 2014 | The uploadFile function in upload/index.php in CosCMS before 1.822 allows remote administrators to execute arbitrary com... |
| CVE-2013-0289 | — | — | 1.3% | May 23, 2014 | Isync 0.4 before 1.0.6, does not verify that the server hostname matches a domain name in the subject's Common Name (CN)... |
| CVE-2013-2107 | — | — | 3.2% | May 23, 2014 | Cross-site request forgery (CSRF) vulnerability in the Mail On Update plugin before 5.2.0 for WordPress allows remote at... |
| CVE-2013-7383 | — | — | 2.9% | May 20, 2014 | x2gocleansessions in X2Go Server before 4.0.0.8 and 4.0.1.x before 4.0.1.10 allows remote authenticated users to gain pr... |
| CVE-2013-4380 | — | — | 0.9% | May 20, 2014 | Cross-site scripting (XSS) vulnerability in the MediaFront module 6.x-1.x before 6.x-1.6, 7.x-1.x before 7.x-1.6, and 7.... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now