2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2013-7171CRITICAL9.8Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp di...
CVE-2013-2093CRITICAL9.8Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote at...
CVE-2013-2091CRITICAL9.8SQL injection vulnerability in Dolibarr ERP/CRM 3.3.1 allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2013-7088CRITICAL9.8ClamAV before 0.97.7 has buffer overflow in the libclamav component
CVE-2013-7087CRITICAL9.8ClamAV before 0.97.7 has WWPack corrupt heap memory
CVE-2013-4108CRITICAL9.8Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors.
CVE-2013-3072CRITICAL9.8An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply....
CVE-2013-3073CRITICAL9.8A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34.
CVE-2013-3367CRITICAL9.8Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML paramete...
CVE-2013-4657CRITICAL9.8Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
CVE-2013-4654CRITICAL9.8Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..
CVE-2013-4656CRITICAL9.8Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service.
CVE-2013-1751CRITICAL9.8TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' param...
CVE-2013-4409CRITICAL9.8An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when ...
CVE-2013-2260CRITICAL9.8Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness
CVE-2013-2259CRITICAL9.8Cryptocat before 2.0.22 has Arbitrary Code Execution on Firefox Conversation Overview
CVE-2013-4103CRITICAL9.8Cryptocat before 2.0.22 has Remote Script Injection due to improperly sanitizing user input
CVE-2013-4102CRITICAL9.1Cryptocat before 2.0.22 strophe.js Math.random() Random Number Generator Weakness
CVE-2013-1666CRITICAL9.8Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro.
CVE-2013-2739CRITICAL9.8MiniDLNA has heap-based buffer overflow
CVE-2013-2738CRITICAL9.8minidlna has SQL Injection that may allow retrieval of arbitrary files
CVE-2013-1910CRITICAL9.8yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other...
CVE-2013-4658CRITICAL9.8Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.
CVE-2013-4857CRITICAL9.8D-Link DIR-865L has PHP File Inclusion in the router xml file.
CVE-2013-7471CRITICAL9.8An issue was discovered in soap.cgi?service=WANIPConn1 on D-Link DIR-845 before v1.02b03, DIR-600 before v2.17b01, DIR-6...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now