2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-1421——Cross-site scripting (XSS) vulnerability in Craig Knudsen WebCalendar before 1.2.5, 1.2.6, and other versions before 1.2...
CVE-2013-6469——JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java c...
CVE-2013-6371——The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consum...
CVE-2013-6370——Buffer overflow in the printbuf APIs in json-c before 0.12 allows remote attackers to cause a denial of service via unsp...
CVE-2013-5948——The Network Analysis tab (Main_Analysis_Content.asp) in the ASUS RT-AC68U and other RT series routers with firmware befo...
CVE-2013-5459——Unspecified vulnerability in IBM Rational Software Architect (RSA) Design Manager and Rational Rhapsody Design Manager 3...
CVE-2013-6219——Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allows local users to by...
CVE-2013-6218——Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote attackers to execute ar...
CVE-2013-6215——Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 a...
CVE-2013-6212——Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 before 10.20.100 allows...
CVE-2013-6214——Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and ...
CVE-2013-6213——Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows remote attackers to exe...
CVE-2013-7196——static/ajax.php in PHPFox 3.7.3, 3.7.4, and 3.7.5 allows remote authenticated users to bypass intended "Only Me" restric...
CVE-2013-7195——PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publicat...
CVE-2013-4279——imapsync 1.564 and earlier performs a release check by default, which sends sensitive information (imapsync, operating s...
CVE-2013-7369——SQL injection vulnerability in an unspecified DLL in the FSDBCom ActiveX control in F-Secure Anti-Virus for Microsoft Ex...
CVE-2013-4290——Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified impact via unknown vect...
CVE-2013-4289——Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified im...
CVE-2013-2143——The users controller in Katello 1.5.0-14 and earlier, and Red Hat Satellite, does not check authorization for the update...
CVE-2013-4694——Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial...
CVE-2013-1764——The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updat...
CVE-2013-4768——The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors re...
CVE-2013-6456——The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete arbitrary host devices...
CVE-2013-7368——Multiple cross-site scripting (XSS) vulnerabilities in Gnew 2013.1 allow remote attackers to inject arbitrary web script...
CVE-2013-5705——apache2/modsecurity.c in ModSecurity before 2.7.6 allows remote attackers to bypass rules by using chunked transfer codi...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now