2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1376 | — | — | 7.2% | Jan 30, 2014 | Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attacker... |
| CVE-2013-0177 | — | — | 21.2% | Jan 30, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in widget/screen/ModelScreenWidget.java in Apache Open For Business ... |
| CVE-2013-7318 | — | — | 1.0% | Jan 29, 2014 | Cross-site scripting (XSS) vulnerability in BusinessFlow/login in AlgoSec Firewall Analyzer 6.4 allows remote attackers ... |
| CVE-2013-6141 | — | — | 1.0% | Jan 29, 2014 | Unspecified vulnerability in op5 Monitor before 6.1.3 allows attackers to read arbitrary files via unknown vectors relat... |
| CVE-2013-5092 | — | — | 3.2% | Jan 29, 2014 | Cross-site scripting (XSS) vulnerability in afa/php/Login.php in AlgoSec Firewall Analyzer 6.1-b86 allows remote attacke... |
| CVE-2013-5005 | — | — | 1.4% | Jan 29, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in ajaxRequest/methodCall.do in Tripwire Enterprise 8.2 and earlier ... |
| CVE-2013-4898 | — | — | 3.2% | Jan 29, 2014 | Unrestricted file upload vulnerability in the user profile page feature in the Timeline Plugin 4.2.5p9 for SocialEngine ... |
| CVE-2013-4889 | — | — | 0.9% | Jan 29, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Digital Signage Xibo 1.4.2 allow remote attac... |
| CVE-2013-4888 | — | — | 1.5% | Jan 29, 2014 | Cross-site scripting (XSS) vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to inject ar... |
| CVE-2013-4887 | — | — | 1.2% | Jan 29, 2014 | SQL injection vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to execute arbitrary SQL ... |
| CVE-2013-4662 | — | — | 1.0% | Jan 29, 2014 | The Quick Search API in CiviCRM 4.2.0 through 4.2.9 and 4.3.0 through 4.3.3 allows remote authenticated users to bypass ... |
| CVE-2013-4661 | — | — | 1.0% | Jan 29, 2014 | CiviCRM 2.0.0 through 4.2.9 and 4.3.0 through 4.3.3 does not properly enforce role-based access control (RBAC) restricti... |
| CVE-2013-2747 | — | — | 1.4% | Jan 29, 2014 | The password reset feature in Courion Access Risk Management Suite Version 8 Update 9 allows remote authenticated users ... |
| CVE-2013-6931 | — | — | 1.0% | Jan 29, 2014 | SQL injection vulnerability in the API in Cybozu Garoon 3.7.x before 3.7.3 allows remote authenticated users to execute ... |
| CVE-2013-6930 | — | — | 1.0% | Jan 29, 2014 | SQL injection vulnerability in the page-navigation implementation in Cybozu Garoon 2.0.0 through 2.0.6, 2.1.0 through 2.... |
| CVE-2013-6749 | — | — | 4.0% | Jan 29, 2014 | Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr for Domino 8.5.1 before 8.5.1.42-001b allows remot... |
| CVE-2013-6748 | — | — | 3.1% | Jan 29, 2014 | Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr for Domino 8.5.1 before 8.5.1.42-001b allows remot... |
| CVE-2013-2974 | — | — | 1.2% | Jan 29, 2014 | The BIRT viewer in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.1.x before 7.2.1.5 allows remote auth... |
| CVE-2013-5094 | — | — | 1.9% | Jan 28, 2014 | Cross-site scripting (XSS) vulnerability in index.exp in McAfee Vulnerability Manager 7.5 allows remote attackers to inj... |
| CVE-2013-6650 | — | — | 2.0% | Jan 28, 2014 | The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Google V8 before 3.22.24.16, as used in Google Chrome... |
| CVE-2013-6649 | — | — | 1.4% | Jan 28, 2014 | Use-after-free vulnerability in the RenderSVGImage::paint function in core/rendering/svg/RenderSVGImage.cpp in Blink, as... |
| CVE-2013-7135 | — | — | 0.4% | Jan 28, 2014 | The Proc::Daemon module 0.14 for Perl uses world-writable permissions for a file that stores a process ID, which allows ... |
| CVE-2013-6838 | — | — | 2.8% | Jan 28, 2014 | An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IVR Pro (VIP2000) 9.0.... |
| CVE-2013-6747 | — | — | 2.2% | Jan 27, 2014 | IBM GSKit 7.x before 7.0.4.48 and 8.x before 8.0.50.16, as used in IBM Security Directory Server (ISDS) and Tivoli Direc... |
| CVE-2013-7299 | — | — | 2.5% | Jan 26, 2014 | framework/common/messageheaderparser.cpp in Tntnet before 2.2.1 allows remote attackers to obtain sensitive information ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now