2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2013-2198CRITICAL9.8The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal allows attackers to bypass intend...
CVE-2013-1350CRITICAL9.1Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities
CVE-2013-3317CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key.
CVE-2013-3316CRITICAL9.8Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass due to the server skipping checks for ...
CVE-2013-2573CRITICAL9.8A Command Injection vulnerability exists in the ap parameter to the /cgi-bin/mft/wireless_mft.cgi file in TP-Link IP Cam...
CVE-2013-3215CRITICAL9.8vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in...
CVE-2013-2570CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to t...
CVE-2013-2568CRITICAL9.8A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 via the ap parameter to /cgi-bin/mft/wireless...
CVE-2013-3214CRITICAL9.8vtiger CRM 5.4.0 and earlier contain a PHP Code Injection Vulnerability in 'vtigerolservice.php'.
CVE-2013-3071CRITICAL9.8NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.
CVE-2013-2748CRITICAL9.8Belkin Wemo Switch before WeMo_US_2.00.2176.PVT could allow remote attackers to upload arbitrary files onto the system.
CVE-2013-1599CRITICAL9.8A Command Injection vulnerability exists in the /var/www/cgi-bin/rtpd.cgi script in D-Link IP Cameras DCS-3411/3430 firm...
CVE-2013-4864CRITICAL9.8MiCasaVerde VeraLite with firmware 1.5.408 allows remote attackers to send HTTP requests to intranet servers via the url...
CVE-2013-2060CRITICAL9.8The download_from_url function in OpenShift Origin allows remote attackers to execute arbitrary commands via shell metac...
CVE-2013-2571CRITICAL9.8Iris 3.8 before build 1548, as used in Xpient point of sale (POS) systems, allows remote attackers to execute arbitrary ...
CVE-2013-1437CRITICAL9.8Eval injection vulnerability in the Module-Metadata module before 1.000015 for Perl allows remote attackers to execute a...
CVE-2013-2612CRITICAL9.8Command-injection vulnerability in Huawei E587 3G Mobile Hotspot 11.203.27 allows remote attackers to execute arbitrary ...
CVE-2013-7390CRITICAL9.8Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before buil...
CVE-2013-4441CRITICAL9.8The Phonemes mode in Pwgen 2.06 generates predictable passwords, which makes it easier for context-dependent attackers t...
CVE-2013-4462CRITICAL9.1WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability
CVE-2013-3493CRITICAL9.8XnView 2.03 has an integer overflow vulnerability
CVE-2013-3492CRITICAL9.8XnView 2.03 has a stack-based buffer overflow vulnerability
CVE-2013-3486CRITICAL9.6IrfanView FlashPix Plugin 4.3.4 0 has an Integer Overflow Vulnerability
CVE-2013-1744CRITICAL9.8IRIS citations management tool through 1.3 allows remote attackers to execute arbitrary commands.
CVE-2013-1595CRITICAL9.8A Buffer Overflow vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via a specially crafted packet in the...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now