2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2639 | — | — | 1.5% | Feb 11, 2014 | Cross-site scripting (XSS) vulnerability in CTERA Cloud Storage OS before 3.2.29.0, 3.2.42.0, and earlier allows remote ... |
| CVE-2013-1980 | — | — | 3.7% | Feb 11, 2014 | Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execut... |
| CVE-2013-1413 | — | — | 1.2% | Feb 11, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in synetics i-doit open 0.9.9-7, i-doit pro 1.0 and earlier, and i-d... |
| CVE-2013-5013 | — | — | 2.0% | Feb 11, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) applianc... |
| CVE-2013-5012 | — | — | 1.5% | Feb 11, 2014 | Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.2 ... |
| CVE-2013-2214 | — | — | 4.3% | Feb 10, 2014 | status.cgi in Nagios 4.0 before 4.0 beta4 and 3.x before 3.5.1 does not properly restrict access to certain users that a... |
| CVE-2013-2055 | — | — | 3.2% | Feb 10, 2014 | Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote ... |
| CVE-2013-6024 | — | — | 0.4% | Feb 10, 2014 | The Edge Client components in F5 BIG-IP APM 10.x, 11.x, 12.x, 13.x, and 14.x, BIG-IP Edge Gateway 10.x and 11.x, and Fir... |
| CVE-2013-4736 | — | — | 1.3% | Feb 10, 2014 | Multiple integer overflows in the JPEG engine drivers in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as us... |
| CVE-2013-2191 | — | — | 0.9% | Feb 8, 2014 | python-bugzilla before 0.9.0 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof Bug... |
| CVE-2013-1904 | — | — | 2.3% | Feb 8, 2014 | Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.... |
| CVE-2013-6332 | — | — | 2.2% | Feb 6, 2014 | Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authenticated users to exec... |
| CVE-2013-2962 | — | — | 0.3% | Feb 6, 2014 | Buffer overflow in the Launcher in IBM WebSphere Transformation Extender 8.4.x before 8.4.0.4 allows local users to caus... |
| CVE-2013-6393 | — | — | 9.3% | Feb 6, 2014 | The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cast, which allows remo... |
| CVE-2013-7130 | — | — | 2.2% | Feb 6, 2014 | The i_create_images_and_backing (aka create_images_and_backing) method in libvirt driver in OpenStack Compute (Nova) Gri... |
| CVE-2013-6490 | — | — | 14.8% | Feb 6, 2014 | The SIMPLE protocol functionality in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a ne... |
| CVE-2013-6489 | — | — | 5.8% | Feb 6, 2014 | Integer signedness error in the MXit functionality in Pidgin before 2.10.8 allows remote attackers to cause a denial of ... |
| CVE-2013-6487 | — | — | 8.2% | Feb 6, 2014 | Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before 2.10.8 allows remote... |
| CVE-2013-6482 | — | — | 2.3% | Feb 6, 2014 | Pidgin before 2.10.8 allows remote MSN servers to cause a denial of service (NULL pointer dereference and crash) via a c... |
| CVE-2013-6481 | — | — | 3.9% | Feb 6, 2014 | libpurple/protocols/yahoo/libymsg.c in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (crash)... |
| CVE-2013-2038 | — | — | 4.2% | Feb 6, 2014 | The NMEA0183 driver in gpsd before 3.9 allows remote attackers to cause a denial of service (daemon termination) and pos... |
| CVE-2013-7321 | — | — | 1.0% | Feb 6, 2014 | Cross-site scripting (XSS) vulnerability in D-Link DAP-2253 Access Point (Rev. A1) with firmware before 1.30 allows remo... |
| CVE-2013-7320 | — | — | 0.7% | Feb 6, 2014 | Cross-site request forgery (CSRF) vulnerability in D-Link DAP-2253 Access Point (Rev. A1) with firmware before 1.30 allo... |
| CVE-2013-7319 | — | — | 4.6% | Feb 6, 2014 | Cross-site scripting (XSS) vulnerability in the Download Manager plugin before 2.5.9 for WordPress allows remote attacke... |
| CVE-2013-6486 | — | — | 3.8% | Feb 6, 2014 | gtkutils.c in Pidgin before 2.10.8 on Windows allows user-assisted remote attackers to execute arbitrary programs via a ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now