2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-7362An unspecified RFC function in SAP CCMS Agent allows remote attackers to execute arbitrary commands via unknown vectors.
CVE-2013-7361Directory traversal vulnerability in SAP CMS and CM Services allows attackers to upload arbitrary files via unspecified ...
CVE-2013-7360Unspecified vulnerability in SAP adminadapter allows remote attackers to read or write to arbitrary files via unknown ve...
CVE-2013-7359Unspecified vulnerability in SAP Mobile Infrastructure allows remote attackers to obtain sensitive port information via ...
CVE-2013-7358Unspecified vulnerability in SAP Guided Procedures Archive Monitor allows remote attackers to obtain usernames, roles, p...
CVE-2013-7357Unspecified vulnerability in the configuration service in SAP J2EE Engine allows remote attackers to obtain credential i...
CVE-2013-7356Unspecified vulnerability in the SAP CCMS / Database Monitors for Oracle allows attackers to obtain the database passwor...
CVE-2013-7355SQL injection vulnerability in SAP BI Universal Data Integration allows remote attackers to execute arbitrary SQL comman...
CVE-2013-0740Open redirect vulnerability in Dell OpenManage Server Administrator (OMSA) before 7.3.0 allows remote attackers to redir...
CVE-2013-6468JBoss Drools, Red Hat JBoss BRMS before 6.0.1, and Red Hat JBoss BPM Suite before 6.0.1 allows remote authenticated user...
CVE-2013-3252Cross-site request forgery (CSRF) vulnerability in the options admin page in the WP-PostViews plugin before 1.63 for Wor...
CVE-2013-3251Cross-site request forgery (CSRF) vulnerability in the qTranslate plugin 2.5.34 and earlier for WordPress allows remote ...
CVE-2013-2699Cross-site request forgery (CSRF) vulnerability in the underConstruction plugin before 1.09 for WordPress allows remote ...
CVE-2013-2693Cross-site request forgery (CSRF) vulnerability in the Options in the WP-Print plugin before 2.52 for WordPress allows r...
CVE-2013-2033Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.46...
CVE-2013-5680Heap-based buffer overflow in hfaxd in HylaFAX+ 5.2.4 through 5.5.3, when using LDAP authentication, might allow remote ...
CVE-2013-1946The RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.0-alpha5 for Drupal, when page ...
CVE-2013-3930Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a ...
CVE-2013-2287Multiple cross-site scripting (XSS) vulnerabilities in views/notify.php in the Uploader plugin 1.0.4 for WordPress allow...
CVE-2013-7352Cross-site request forgery (CSRF) vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote attackers t...
CVE-2013-0735Multiple SQL injection vulnerabilities in wpf.class.php in the Mingle Forum plugin before 1.0.34 for WordPress allow rem...
CVE-2013-3484Multiple cross-site scripting (XSS) vulnerabilities in dotCMS before 2.3.2 allow remote attackers to inject arbitrary we...
CVE-2013-2945SQL injection vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote authenticated administrators to...
CVE-2013-0729Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary c...
CVE-2013-5365Heap-based buffer overflow in Autodesk SketchBook for Enterprise 2014, Pro, and Express before 6.25, and Copic Edition b...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now