2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-7171 | CRITICAL | 9.8 | 6.3% | Nov 21, 2019 | Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp di... |
| CVE-2013-2093 | CRITICAL | 9.8 | 5.2% | Nov 20, 2019 | Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote at... |
| CVE-2013-2091 | CRITICAL | 9.8 | 2.5% | Nov 20, 2019 | SQL injection vulnerability in Dolibarr ERP/CRM 3.3.1 allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2013-7088 | CRITICAL | 9.8 | 3.1% | Nov 15, 2019 | ClamAV before 0.97.7 has buffer overflow in the libclamav component |
| CVE-2013-7087 | CRITICAL | 9.8 | 2.9% | Nov 15, 2019 | ClamAV before 0.97.7 has WWPack corrupt heap memory |
| CVE-2013-4108 | CRITICAL | 9.8 | 1.5% | Nov 14, 2019 | Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors. |
| CVE-2013-3072 | CRITICAL | 9.8 | 2.1% | Nov 14, 2019 | An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.... |
| CVE-2013-3073 | CRITICAL | 9.8 | 3.7% | Nov 14, 2019 | A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34. |
| CVE-2013-3367 | CRITICAL | 9.8 | 2.7% | Nov 13, 2019 | Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML paramete... |
| CVE-2013-4657 | CRITICAL | 9.8 | 1.9% | Nov 13, 2019 | Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service. |
| CVE-2013-4654 | CRITICAL | 9.8 | 2.7% | Nov 13, 2019 | Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND.. |
| CVE-2013-4656 | CRITICAL | 9.8 | 2.2% | Nov 13, 2019 | Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service. |
| CVE-2013-1751 | CRITICAL | 9.8 | 4.9% | Nov 7, 2019 | TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' param... |
| CVE-2013-4409 | CRITICAL | 9.8 | 3.0% | Nov 4, 2019 | An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when ... |
| CVE-2013-2260 | CRITICAL | 9.8 | 2.2% | Nov 4, 2019 | Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness |
| CVE-2013-2259 | CRITICAL | 9.8 | 3.7% | Nov 4, 2019 | Cryptocat before 2.0.22 has Arbitrary Code Execution on Firefox Conversation Overview |
| CVE-2013-4103 | CRITICAL | 9.8 | 6.9% | Nov 4, 2019 | Cryptocat before 2.0.22 has Remote Script Injection due to improperly sanitizing user input |
| CVE-2013-4102 | CRITICAL | 9.1 | 2.0% | Nov 4, 2019 | Cryptocat before 2.0.22 strophe.js Math.random() Random Number Generator Weakness |
| CVE-2013-1666 | CRITICAL | 9.8 | 2.3% | Nov 1, 2019 | Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro. |
| CVE-2013-2739 | CRITICAL | 9.8 | 4.7% | Nov 1, 2019 | MiniDLNA has heap-based buffer overflow |
| CVE-2013-2738 | CRITICAL | 9.8 | 2.2% | Nov 1, 2019 | minidlna has SQL Injection that may allow retrieval of arbitrary files |
| CVE-2013-1910 | CRITICAL | 9.8 | 2.5% | Oct 31, 2019 | yum does not properly handle bad metadata, which allows an attacker to cause a denial of service and possibly have other... |
| CVE-2013-4658 | CRITICAL | 9.8 | 9.3% | Oct 25, 2019 | Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share. |
| CVE-2013-4857 | CRITICAL | 9.8 | 1.6% | Oct 25, 2019 | D-Link DIR-865L has PHP File Inclusion in the router xml file. |
| CVE-2013-7471 | CRITICAL | 9.8 | 24.0% | Jun 11, 2019 | An issue was discovered in soap.cgi?service=WANIPConn1 on D-Link DIR-845 before v1.02b03, DIR-600 before v2.17b01, DIR-6... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now