2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5429 | — | — | 0.9% | Jan 21, 2014 | The Risk Based Access functionality in IBM Tivoli Federated Identity Manager (TFIM) 6.2.2 before FP9 and Tivoli Federate... |
| CVE-2013-4030 | — | — | 0.9% | Jan 21, 2014 | Integrated Management Module (IMM) 2 1.00 through 2.00 on IBM System X and Flex System servers supports SSL cipher suite... |
| CVE-2013-6488 | — | — | — | Jan 20, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-0328. Reason: This candidate is a reservation du... |
| CVE-2013-3606 | — | — | 1.5% | Jan 20, 2014 | The login page in the GoAhead web server on Dell PowerConnect 3348 1.2.1.3, 3524p 2.0.0.48, and 5324 2.0.1.4 switches al... |
| CVE-2013-3595 | — | — | 1.8% | Jan 20, 2014 | The OpenManage web application 2.5 build 1.19 on Dell PowerConnect 3348 1.2.1.3, 3524p 2.0.0.48, and 5324 2.0.1.4 switch... |
| CVE-2013-3594 | — | — | 3.9% | Jan 20, 2014 | The SSH service on Dell PowerConnect 3348 1.2.1.3, 3524p 2.0.0.48, and 5324 2.0.1.4 switches allows remote attackers to ... |
| CVE-2013-2170 | — | — | — | Jan 20, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-2169 | — | — | — | Jan 20, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-7078 | — | — | 1.6% | Jan 19, 2014 | Cross-site scripting (XSS) vulnerability in the errorAction method in the ActionController base class in the Extbase Fra... |
| CVE-2013-4375 | — | — | 0.6% | Jan 19, 2014 | The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local... |
| CVE-2013-2185 | — | — | 7.2% | Jan 19, 2014 | The readObject method in the DiskFileItem class in Apache Tomcat and JBoss Web, as used in Red Hat JBoss Enterprise Appl... |
| CVE-2013-2142 | — | — | 0.3% | Jan 19, 2014 | userpref.c in libimobiledevice 1.1.4, when $HOME and $XDG_CONFIG_HOME are not set, allows local users to overwrite arbit... |
| CVE-2013-1438 | — | — | 2.1% | Jan 19, 2014 | Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows c... |
| CVE-2013-0244 | — | — | 2.1% | Jan 19, 2014 | Cross-site scripting (XSS) vulnerability in Drupal 6.x before 6.28 and 7.x before 7.19, when running with older versions... |
| CVE-2013-4231 | — | — | 7.5% | Jan 19, 2014 | Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds wri... |
| CVE-2013-3483 | — | — | 3.5% | Jan 19, 2014 | Stack-based buffer overflow in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.1.1301 allows remote attackers t... |
| CVE-2013-3482 | — | — | 31.5% | Jan 19, 2014 | Stack-based buffer overflow in the rf_report_error function in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.... |
| CVE-2013-1740 | — | — | 1.9% | Jan 18, 2014 | The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when t... |
| CVE-2013-2037 | — | — | 1.3% | Jan 18, 2014 | httplib2 0.7.2, 0.8, and earlier, after an initial connection is made, does not verify that the server hostname matches ... |
| CVE-2013-6425 | — | — | 2.9% | Jan 18, 2014 | Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and c... |
| CVE-2013-6424 | — | — | 2.9% | Jan 18, 2014 | Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause ... |
| CVE-2013-7295 | — | — | 1.8% | Jan 17, 2014 | Tor before 0.2.4.20, when OpenSSL 1.x is used in conjunction with a certain HardwareAccel setting on Intel Sandy Bridge ... |
| CVE-2013-7243 | — | — | 1.9% | Jan 17, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS 3.1.2 and 3.2.3 allow remote attackers to inject ar... |
| CVE-2013-7204 | — | — | 10.6% | Jan 17, 2014 | Cross-site request forgery (CSRF) vulnerability in set_users.cgi in Conceptronic CIPCAMPTIWL Camera 1.0 with firmware 21... |
| CVE-2013-6725 | — | — | 1.6% | Jan 16, 2014 | Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application Server 7.x before 7.... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now