2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4975 | HIGH | 8.8 | 12.3% | Dec 27, 2019 | Hikvision DS-2CD7153-E IP Camera has Privilege Escalation |
| CVE-2013-4859 | HIGH | 8.1 | 7.0% | Dec 27, 2019 | INSTEON Hub 2242-222 lacks Web and API authentication |
| CVE-2013-4796 | HIGH | 8.8 | 1.9% | Dec 27, 2019 | ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request |
| CVE-2013-4695 | HIGH | 7.8 | 5.3% | Dec 27, 2019 | Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution |
| CVE-2013-2011 | HIGH | 8.8 | 5.1% | Dec 26, 2019 | WordPress W3 Super Cache Plugin before 1.3.2 contains a PHP code-execution vulnerability which could allow remote attack... |
| CVE-2013-3691 | HIGH | 7.5 | 3.9% | Dec 11, 2019 | AirLive POE-2600HD allows remote attackers to cause a denial of service (device reset) via a long URL. |
| CVE-2013-4593 | HIGH | 7.5 | 1.8% | Dec 11, 2019 | RubyGem omniauth-facebook has an access token security vulnerability |
| CVE-2013-4245 | HIGH | 7.3 | 0.5% | Dec 11, 2019 | Orca has arbitrary code execution due to insecure Python module load |
| CVE-2013-4133 | HIGH | 7.5 | 2.8% | Dec 10, 2019 | kde-workspace before 4.10.5 has a memory leak in plasma desktop |
| CVE-2013-4120 | HIGH | 7.5 | 1.3% | Dec 10, 2019 | Katello has a Denial of Service vulnerability in API OAuth authentication |
| CVE-2013-2183 | HIGH | 7.1 | 0.4% | Dec 10, 2019 | Monkey HTTP Daemon has local security bypass |
| CVE-2013-1793 | HIGH | 7.5 | 1.0% | Dec 10, 2019 | openstack-utils openstack-db has insecure password creation |
| CVE-2013-0293 | HIGH | 7.8 | 0.4% | Dec 10, 2019 | oVirt Node: Lock screen accepts F2 to drop to shell causing privilege escalation |
| CVE-2013-0243 | HIGH | 7.4 | 1.0% | Dec 5, 2019 | haskell-tls-extra before 0.6.1 has Basic Constraints attribute vulnerability may lead to Man in the Middle attacks on TL... |
| CVE-2013-7325 | HIGH | 8.8 | 1.8% | Dec 3, 2019 | An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code vi... |
| CVE-2013-2228 | HIGH | 8.1 | 1.9% | Dec 3, 2019 | SaltStack RSA Key Generation allows remote users to decrypt communications |
| CVE-2013-2106 | HIGH | 7.5 | 1.6% | Dec 3, 2019 | webauth before 4.6.1 has authentication credential disclosure |
| CVE-2013-2103 | HIGH | 8.1 | 1.0% | Dec 3, 2019 | OpenShift cartridge allows remote URL retrieval |
| CVE-2013-4410 | HIGH | 7.5 | 2.4% | Dec 2, 2019 | ReviewBoard: has an access-control problem in REST API |
| CVE-2013-7484 | HIGH | 7.5 | 1.2% | Nov 30, 2019 | Zabbix before 5.0 represents passwords in the users table with unsalted MD5. |
| CVE-2013-6234 | HIGH | 8 | 6.7% | Nov 22, 2019 | Unrestricted file upload vulnerability in the Worksheet designer in SpagoBI before 4.1 allows remote authenticated users... |
| CVE-2013-6811 | HIGH | 8.8 | 1.0% | Nov 22, 2019 | Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attack... |
| CVE-2013-3314 | HIGH | 7.5 | 7.1% | Nov 21, 2019 | The Loftek Nexus 543 IP Camera allows remote attackers to obtain (1) IP addresses via a request to get_realip.cgi or (2)... |
| CVE-2013-3313 | HIGH | 7.5 | 2.6% | Nov 21, 2019 | The Loftek Nexus 543 IP Camera stores passwords in cleartext, which allows remote attackers to obtain sensitive informat... |
| CVE-2013-3312 | HIGH | 8.8 | 0.9% | Nov 21, 2019 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Loftek Nexus 543 IP Camera allow remote attackers to h... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now