2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2013-4333CRITICAL9.1OpenPNE 3 versions 3.8.7, 3.6.11, 3.4.21.1, 3.2.7.6, 3.0.8.5 has an External Entity Injection Vulnerability
CVE-2013-3960CRITICAL9.9Easytime Studio Easy File Manager 1.1 has a HTTP request security bypass
CVE-2013-1592CRITICAL9.8A Buffer Overflow vulnerability exists in the Message Server service _MsJ2EE_AddStatistics() function when sending speci...
CVE-2013-6792CRITICAL9.8Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
CVE-2013-6225CRITICAL9.8LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability
CVE-2013-7380CRITICAL9.8The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability
CVE-2013-5122CRITICAL9.8Cisco Linksys Routers EA2700, EA3500, E4200, EA4500: A bug can cause an unsafe TCP port to open which leads to unauthent...
CVE-2013-3941CRITICAL9.8Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ mar...
CVE-2013-7070CRITICAL9.8The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary ...
CVE-2013-5027CRITICAL9.8Collabtive 1.0 has incorrect access control
CVE-2013-4982CRITICAL9.8AVTECH AVN801 DVR has a security bypass via the administration login captcha
CVE-2013-4976CRITICAL9.8Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials
CVE-2013-4743CRITICAL9.8Static HTTP Server 1.0 has a Local Overflow
CVE-2013-4621CRITICAL9.8Magnolia CMS before 4.5.9 has multiple access bypass vulnerabilities
CVE-2013-3088CRITICAL9.8Belkin N900 router (F9K1104v1) contains an Authentication Bypass using "Javascript debugging".
CVE-2013-3085CRITICAL9.8An authentication bypass exists in the web management interface in Belkin F5D8236-4 v2.
CVE-2013-5743CRITICAL9.8Multiple SQL injection vulnerabilities in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.9rc1, and 2.1.x before 2.1.7.
CVE-2013-3542CRITICAL10Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3...
CVE-2013-2167CRITICAL9.8python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache signing bypass
CVE-2013-2166CRITICAL9.8python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache encryption bypass
CVE-2013-2159CRITICAL9.8Monkey HTTP Daemon: broken user name authentication
CVE-2013-2095CRITICAL9.8rubygem-openshift-origin-controller: API can be used to create applications via cartridge_cache.rb URI.prase() to perfor...
CVE-2013-2745CRITICAL9.8An SQL Injection vulnerability exists in MiniDLNA prior to 1.1.0
CVE-2013-4486CRITICAL9.8Zanata 3.0.0 through 3.1.2 has RCE due to EL interpolation in logging
CVE-2013-7171CRITICAL9.8Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp di...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now