2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2013-7052CRITICAL9.8D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script
CVE-2013-2198CRITICAL9.8The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal allows attackers to bypass intend...
CVE-2013-1350CRITICAL9.1Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities
CVE-2013-3317CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key.
CVE-2013-3316CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass due to the server skipping checks for ...
CVE-2013-2573CRITICAL9.8A Command Injection vulnerability exists in the ap parameter to the /cgi-bin/mft/wireless_mft.cgi file in TP-Link IP Cam...
CVE-2013-3215CRITICAL9.8vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in...
CVE-2013-2570CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to t...
CVE-2013-2568CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 via the ap parameter to /cgi-bin/mft/wireless...
CVE-2013-3214CRITICAL9.8vtiger CRM 5.4.0 and earlier contain a PHP Code Injection Vulnerability in 'vtigerolservice.php'.
CVE-2013-3071CRITICAL9.8NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.
CVE-2013-2748CRITICAL9.8Belkin Wemo Switch before WeMo_US_2.00.2176.PVT could allow remote attackers to upload arbitrary files onto the system.
CVE-2013-1599CRITICAL9.8A Command Injection vulnerability exists in the /var/www/cgi-bin/rtpd.cgi script in D-Link IP Cameras DCS-3411/3430 firm...
CVE-2013-4864CRITICAL9.8MiCasaVerde VeraLite with firmware 1.5.408 allows remote attackers to send HTTP requests to intranet servers via the url...
CVE-2013-2060CRITICAL9.8The download_from_url function in OpenShift Origin allows remote attackers to execute arbitrary commands via shell metac...
CVE-2013-2571CRITICAL9.8Iris 3.8 before build 1548, as used in Xpient point of sale (POS) systems, allows remote attackers to execute arbitrary ...
CVE-2013-1437CRITICAL9.8Eval injection vulnerability in the Module-Metadata module before 1.000015 for Perl allows remote attackers to execute a...
CVE-2013-2612CRITICAL9.8Command-injection vulnerability in Huawei E587 3G Mobile Hotspot 11.203.27 allows remote attackers to execute arbitrary ...
CVE-2013-7390CRITICAL9.8Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before buil...
CVE-2013-4441CRITICAL9.8The Phonemes mode in Pwgen 2.06 generates predictable passwords, which makes it easier for context-dependent attackers t...
CVE-2013-4462CRITICAL9.1WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability
CVE-2013-3493CRITICAL9.8XnView 2.03 has an integer overflow vulnerability
CVE-2013-3492CRITICAL9.8XnView 2.03 has a stack-based buffer overflow vulnerability
CVE-2013-3486CRITICAL9.6IrfanView FlashPix Plugin 4.3.4 0 has an Integer Overflow Vulnerability
CVE-2013-1744CRITICAL9.8IRIS citations management tool through 1.3 allows remote attackers to execute arbitrary commands.

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now