2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1867 | MEDIUM | 6.1 | 0.4% | Jan 30, 2020 | Gemalto Tokend 2013 has an Arbitrary File Creation/Overwrite Vulnerability |
| CVE-2013-1866 | MEDIUM | 6.1 | 0.4% | Jan 30, 2020 | OpenSC OpenSC.tokend has an Arbitrary File Creation/Overwrite Vulnerability |
| CVE-2013-1631 | MEDIUM | 5.3 | 1.3% | Jan 30, 2020 | Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action |
| CVE-2013-1351 | MEDIUM | 5.9 | 2.0% | Jan 30, 2020 | Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password. |
| CVE-2013-0739 | MEDIUM | 6.1 | 0.8% | Jan 30, 2020 | Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script. |
| CVE-2013-0738 | MEDIUM | 6.1 | 0.8% | Jan 30, 2020 | Chamilo 1.9.4 has Multiple XSS and HTML Injection Vulnerabilities: blog.php and announcements.php. |
| CVE-2013-3320 | MEDIUM | 6.1 | 2.3% | Jan 29, 2020 | Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject... |
| CVE-2013-0161 | MEDIUM | 5.4 | 1.0% | Jan 29, 2020 | Havalite CMS 1.1.7 has a stored XSS vulnerability |
| CVE-2013-1603 | MEDIUM | 5.3 | 16.1% | Jan 28, 2020 | An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DC... |
| CVE-2013-1601 | MEDIUM | 5.3 | 12.7% | Jan 28, 2020 | An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processin... |
| CVE-2013-1600 | MEDIUM | 5.3 | 18.5% | Jan 28, 2020 | An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.0... |
| CVE-2013-2764 | MEDIUM | 6.1 | 0.9% | Jan 28, 2020 | Secure Entry Server before 4.7.0 contains a URI Redirection vulnerability which could allow remote attackers to conduct ... |
| CVE-2013-2714 | MEDIUM | 6.1 | 2.7% | Jan 28, 2020 | Cross-site Scripting (XSS) in WordPress podPress Plugin 8.8.10.13 could allow remote attackers to inject arbitrary web s... |
| CVE-2013-4865 | MEDIUM | 6.5 | 1.7% | Jan 28, 2020 | Cross-site request forgery (CSRF) vulnerability in upgrade_step2.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows... |
| CVE-2013-4861 | MEDIUM | 6.5 | 6.6% | Jan 28, 2020 | Directory traversal vulnerability in cgi-bin/cmh/get_file.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows remote... |
| CVE-2013-4582 | MEDIUM | 6.5 | 1.9% | Jan 28, 2020 | The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in G... |
| CVE-2013-0294 | MEDIUM | 5.9 | 2.8% | Jan 28, 2020 | packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes... |
| CVE-2013-6455 | MEDIUM | 5.3 | 1.1% | Jan 28, 2020 | The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attac... |
| CVE-2013-6451 | MEDIUM | 6.1 | 1.1% | Jan 28, 2020 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.19.9 before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.... |
| CVE-2013-4770 | MEDIUM | 6.1 | 0.8% | Jan 27, 2020 | Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attacke... |
| CVE-2013-0286 | MEDIUM | 5.4 | 0.8% | Jan 27, 2020 | Pinboard 1.0.6 theme for Wordpress has XSS. |
| CVE-2013-1597 | MEDIUM | 6.5 | 14.2% | Jan 24, 2020 | A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET requ... |
| CVE-2013-1596 | MEDIUM | 5.3 | 10.4% | Jan 24, 2020 | An Authentication Bypass Vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via specially crafted RTSP pac... |
| CVE-2013-6785 | MEDIUM | 4.3 | 4.4% | Jan 23, 2020 | Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attacker... |
| CVE-2013-6772 | MEDIUM | 4.3 | 0.7% | Jan 23, 2020 | Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now