2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2013-1867MEDIUM6.1Gemalto Tokend 2013 has an Arbitrary File Creation/Overwrite Vulnerability
CVE-2013-1866MEDIUM6.1OpenSC OpenSC.tokend has an Arbitrary File Creation/Overwrite Vulnerability
CVE-2013-1631MEDIUM5.3Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action
CVE-2013-1351MEDIUM5.9Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password.
CVE-2013-0739MEDIUM6.1Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script.
CVE-2013-0738MEDIUM6.1Chamilo 1.9.4 has Multiple XSS and HTML Injection Vulnerabilities: blog.php and announcements.php.
CVE-2013-3320MEDIUM6.1Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject...
CVE-2013-0161MEDIUM5.4Havalite CMS 1.1.7 has a stored XSS vulnerability
CVE-2013-1603MEDIUM5.3An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DC...
CVE-2013-1601MEDIUM5.3An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processin...
CVE-2013-1600MEDIUM5.3An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.0...
CVE-2013-2764MEDIUM6.1Secure Entry Server before 4.7.0 contains a URI Redirection vulnerability which could allow remote attackers to conduct ...
CVE-2013-2714MEDIUM6.1Cross-site Scripting (XSS) in WordPress podPress Plugin 8.8.10.13 could allow remote attackers to inject arbitrary web s...
CVE-2013-4865MEDIUM6.5Cross-site request forgery (CSRF) vulnerability in upgrade_step2.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows...
CVE-2013-4861MEDIUM6.5Directory traversal vulnerability in cgi-bin/cmh/get_file.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows remote...
CVE-2013-4582MEDIUM6.5The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in G...
CVE-2013-0294MEDIUM5.9packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes...
CVE-2013-6455MEDIUM5.3The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attac...
CVE-2013-6451MEDIUM6.1Cross-site scripting (XSS) vulnerability in MediaWiki 1.19.9 before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22....
CVE-2013-4770MEDIUM6.1Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attacke...
CVE-2013-0286MEDIUM5.4Pinboard 1.0.6 theme for Wordpress has XSS.
CVE-2013-1597MEDIUM6.5A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET requ...
CVE-2013-1596MEDIUM5.3An Authentication Bypass Vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via specially crafted RTSP pac...
CVE-2013-6785MEDIUM4.3Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attacker...
CVE-2013-6772MEDIUM4.3Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now