2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6469 | — | — | 1.6% | Apr 22, 2014 | JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java c... |
| CVE-2013-6371 | — | — | 3.2% | Apr 22, 2014 | The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consum... |
| CVE-2013-6370 | — | — | 4.5% | Apr 22, 2014 | Buffer overflow in the printbuf APIs in json-c before 0.12 allows remote attackers to cause a denial of service via unsp... |
| CVE-2013-5948 | — | — | 9.4% | Apr 22, 2014 | The Network Analysis tab (Main_Analysis_Content.asp) in the ASUS RT-AC68U and other RT series routers with firmware befo... |
| CVE-2013-5459 | — | — | 1.0% | Apr 21, 2014 | Unspecified vulnerability in IBM Rational Software Architect (RSA) Design Manager and Rational Rhapsody Design Manager 3... |
| CVE-2013-6219 | — | — | 0.3% | Apr 19, 2014 | Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allows local users to by... |
| CVE-2013-6218 | — | — | 8.7% | Apr 19, 2014 | Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote attackers to execute ar... |
| CVE-2013-6215 | — | — | 2.6% | Apr 19, 2014 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 a... |
| CVE-2013-6212 | — | — | 1.3% | Apr 19, 2014 | Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 before 10.20.100 allows... |
| CVE-2013-6214 | — | — | 1.1% | Apr 19, 2014 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and ... |
| CVE-2013-6213 | — | — | 10.4% | Apr 19, 2014 | Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows remote attackers to exe... |
| CVE-2013-7196 | — | — | 2.4% | Apr 18, 2014 | static/ajax.php in PHPFox 3.7.3, 3.7.4, and 3.7.5 allows remote authenticated users to bypass intended "Only Me" restric... |
| CVE-2013-7195 | — | — | 1.2% | Apr 18, 2014 | PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publicat... |
| CVE-2013-4279 | — | — | 1.8% | Apr 18, 2014 | imapsync 1.564 and earlier performs a release check by default, which sends sensitive information (imapsync, operating s... |
| CVE-2013-7369 | — | — | 1.3% | Apr 18, 2014 | SQL injection vulnerability in an unspecified DLL in the FSDBCom ActiveX control in F-Secure Anti-Virus for Microsoft Ex... |
| CVE-2013-4290 | — | — | 3.0% | Apr 18, 2014 | Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified impact via unknown vect... |
| CVE-2013-4289 | — | — | 2.7% | Apr 18, 2014 | Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified im... |
| CVE-2013-2143 | — | — | 48.2% | Apr 17, 2014 | The users controller in Katello 1.5.0-14 and earlier, and Red Hat Satellite, does not check authorization for the update... |
| CVE-2013-4694 | — | — | 17.2% | Apr 16, 2014 | Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial... |
| CVE-2013-1764 | — | — | 0.4% | Apr 16, 2014 | The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updat... |
| CVE-2013-4768 | — | — | 1.3% | Apr 16, 2014 | The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors re... |
| CVE-2013-6456 | — | — | 0.6% | Apr 15, 2014 | The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete arbitrary host devices... |
| CVE-2013-7368 | — | — | 3.2% | Apr 15, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Gnew 2013.1 allow remote attackers to inject arbitrary web script... |
| CVE-2013-5705 | — | — | 2.6% | Apr 15, 2014 | apache2/modsecurity.c in ModSecurity before 2.7.6 allows remote attackers to bypass rules by using chunked transfer codi... |
| CVE-2013-5704 | — | — | 60.2% | Apr 15, 2014 | The mod_headers module in the Apache HTTP Server 2.2.22 allows remote attackers to bypass "RequestHeader unset" directiv... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now