2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2013-4975HIGH8.8Hikvision DS-2CD7153-E IP Camera has Privilege Escalation
CVE-2013-4859HIGH8.1INSTEON Hub 2242-222 lacks Web and API authentication
CVE-2013-4796HIGH8.8ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request
CVE-2013-4695HIGH7.8Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution
CVE-2013-2011HIGH8.8WordPress W3 Super Cache Plugin before 1.3.2 contains a PHP code-execution vulnerability which could allow remote attack...
CVE-2013-3691HIGH7.5AirLive POE-2600HD allows remote attackers to cause a denial of service (device reset) via a long URL.
CVE-2013-4593HIGH7.5RubyGem omniauth-facebook has an access token security vulnerability
CVE-2013-4245HIGH7.3Orca has arbitrary code execution due to insecure Python module load
CVE-2013-4133HIGH7.5kde-workspace before 4.10.5 has a memory leak in plasma desktop
CVE-2013-4120HIGH7.5Katello has a Denial of Service vulnerability in API OAuth authentication
CVE-2013-2183HIGH7.1Monkey HTTP Daemon has local security bypass
CVE-2013-1793HIGH7.5openstack-utils openstack-db has insecure password creation
CVE-2013-0293HIGH7.8oVirt Node: Lock screen accepts F2 to drop to shell causing privilege escalation
CVE-2013-0243HIGH7.4haskell-tls-extra before 0.6.1 has Basic Constraints attribute vulnerability may lead to Man in the Middle attacks on TL...
CVE-2013-7325HIGH8.8An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code vi...
CVE-2013-2228HIGH8.1SaltStack RSA Key Generation allows remote users to decrypt communications
CVE-2013-2106HIGH7.5webauth before 4.6.1 has authentication credential disclosure
CVE-2013-2103HIGH8.1OpenShift cartridge allows remote URL retrieval
CVE-2013-4410HIGH7.5ReviewBoard: has an access-control problem in REST API
CVE-2013-7484HIGH7.5Zabbix before 5.0 represents passwords in the users table with unsalted MD5.
CVE-2013-6234HIGH8Unrestricted file upload vulnerability in the Worksheet designer in SpagoBI before 4.1 allows remote authenticated users...
CVE-2013-6811HIGH8.8Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attack...
CVE-2013-3314HIGH7.5The Loftek Nexus 543 IP Camera allows remote attackers to obtain (1) IP addresses via a request to get_realip.cgi or (2)...
CVE-2013-3313HIGH7.5The Loftek Nexus 543 IP Camera stores passwords in cleartext, which allows remote attackers to obtain sensitive informat...
CVE-2013-3312HIGH8.8Multiple cross-site request forgery (CSRF) vulnerabilities in the Loftek Nexus 543 IP Camera allow remote attackers to h...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now