2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4722 | — | — | 1.9% | Apr 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Admin/login/default.asp in DDSN Interactive cm3 Acora CMS 6.0.6/1... |
| CVE-2013-4565 | — | — | 3.5% | Apr 25, 2014 | Heap-based buffer overflow in the __OLEdecode function in ppthtml 0.5.1 and earlier allows remote attackers to cause a d... |
| CVE-2013-3069 | — | — | 1.1% | Apr 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in NETGEAR WNDR4700 with firmware 1.0.0.34 allow remote authenticate... |
| CVE-2013-2025 | — | — | 1.9% | Apr 25, 2014 | Cross-site scripting (XSS) vulnerability in Ushahidi Platform 2.5.x through 2.6.1 allows remote attackers to inject arbi... |
| CVE-2013-5956 | — | — | 1.9% | Apr 25, 2014 | Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) compon... |
| CVE-2013-5954 | — | — | 3.1% | Apr 25, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in OpenX 2.8.11 and earlier allow remote attackers to hijack ... |
| CVE-2013-6738 | — | — | 2.1% | Apr 24, 2014 | Cross-site scripting (XSS) vulnerability in IBM SmartCloud Analytics Log Analysis 1.1 and 1.2 before 1.2.0.0-CSI-SCALA-I... |
| CVE-2013-7338 | — | — | 5.1% | Apr 22, 2014 | Python before 3.3.4 RC1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a f... |
| CVE-2013-4472 | — | — | 0.4% | Apr 22, 2014 | The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 and earlier, when running on a system other than Un... |
| CVE-2013-4116 | — | — | 0.4% | Apr 22, 2014 | lib/npm.js in Node Packaged Modules (npm) before 1.3.3 allows local users to overwrite arbitrary files via a symlink att... |
| CVE-2013-2187 | — | — | 5.5% | Apr 22, 2014 | Cross-site scripting (XSS) vulnerability in Apache Archiva 1.2 through 1.2.2 and 1.3 before 1.3.8 allows remote attacker... |
| CVE-2013-2105 | — | — | 0.4% | Apr 22, 2014 | The Show In Browser (show_in_browser) gem 0.0.3 for Ruby allows local users to inject arbitrary web script or HTML via a... |
| CVE-2013-1421 | — | — | 1.2% | Apr 22, 2014 | Cross-site scripting (XSS) vulnerability in Craig Knudsen WebCalendar before 1.2.5, 1.2.6, and other versions before 1.2... |
| CVE-2013-6469 | — | — | 1.6% | Apr 22, 2014 | JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to execute arbitrary Java c... |
| CVE-2013-6371 | — | — | 3.2% | Apr 22, 2014 | The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consum... |
| CVE-2013-6370 | — | — | 4.5% | Apr 22, 2014 | Buffer overflow in the printbuf APIs in json-c before 0.12 allows remote attackers to cause a denial of service via unsp... |
| CVE-2013-5948 | — | — | 9.4% | Apr 22, 2014 | The Network Analysis tab (Main_Analysis_Content.asp) in the ASUS RT-AC68U and other RT series routers with firmware befo... |
| CVE-2013-5459 | — | — | 1.0% | Apr 21, 2014 | Unspecified vulnerability in IBM Rational Software Architect (RSA) Design Manager and Rational Rhapsody Design Manager 3... |
| CVE-2013-6219 | — | — | 0.3% | Apr 19, 2014 | Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allows local users to by... |
| CVE-2013-6218 | — | — | 8.7% | Apr 19, 2014 | Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote attackers to execute ar... |
| CVE-2013-6215 | — | — | 2.6% | Apr 19, 2014 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 a... |
| CVE-2013-6212 | — | — | 1.3% | Apr 19, 2014 | Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 before 10.20.100 allows... |
| CVE-2013-6214 | — | — | 1.1% | Apr 19, 2014 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and ... |
| CVE-2013-6213 | — | — | 10.4% | Apr 19, 2014 | Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows remote attackers to exe... |
| CVE-2013-7196 | — | — | 2.4% | Apr 18, 2014 | static/ajax.php in PHPFox 3.7.3, 3.7.4, and 3.7.5 allows remote authenticated users to bypass intended "Only Me" restric... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now