2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-7363——Unspecified vulnerability in the Diagnostics (SMD) agent in SAP Solution Manager allows remote attackers to obtain sensi...
CVE-2013-7362——An unspecified RFC function in SAP CCMS Agent allows remote attackers to execute arbitrary commands via unknown vectors.
CVE-2013-7361——Directory traversal vulnerability in SAP CMS and CM Services allows attackers to upload arbitrary files via unspecified ...
CVE-2013-7360——Unspecified vulnerability in SAP adminadapter allows remote attackers to read or write to arbitrary files via unknown ve...
CVE-2013-7359——Unspecified vulnerability in SAP Mobile Infrastructure allows remote attackers to obtain sensitive port information via ...
CVE-2013-7358——Unspecified vulnerability in SAP Guided Procedures Archive Monitor allows remote attackers to obtain usernames, roles, p...
CVE-2013-7357——Unspecified vulnerability in the configuration service in SAP J2EE Engine allows remote attackers to obtain credential i...
CVE-2013-7356——Unspecified vulnerability in the SAP CCMS / Database Monitors for Oracle allows attackers to obtain the database passwor...
CVE-2013-7355——SQL injection vulnerability in SAP BI Universal Data Integration allows remote attackers to execute arbitrary SQL comman...
CVE-2013-0740——Open redirect vulnerability in Dell OpenManage Server Administrator (OMSA) before 7.3.0 allows remote attackers to redir...
CVE-2013-6468——JBoss Drools, Red Hat JBoss BRMS before 6.0.1, and Red Hat JBoss BPM Suite before 6.0.1 allows remote authenticated user...
CVE-2013-3252——Cross-site request forgery (CSRF) vulnerability in the options admin page in the WP-PostViews plugin before 1.63 for Wor...
CVE-2013-3251——Cross-site request forgery (CSRF) vulnerability in the qTranslate plugin 2.5.34 and earlier for WordPress allows remote ...
CVE-2013-2699——Cross-site request forgery (CSRF) vulnerability in the underConstruction plugin before 1.09 for WordPress allows remote ...
CVE-2013-2693——Cross-site request forgery (CSRF) vulnerability in the Options in the WP-Print plugin before 2.52 for WordPress allows r...
CVE-2013-2033——Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.46...
CVE-2013-5680——Heap-based buffer overflow in hfaxd in HylaFAX+ 5.2.4 through 5.5.3, when using LDAP authentication, might allow remote ...
CVE-2013-1946——The RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.0-alpha5 for Drupal, when page ...
CVE-2013-3930——Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a ...
CVE-2013-2287——Multiple cross-site scripting (XSS) vulnerabilities in views/notify.php in the Uploader plugin 1.0.4 for WordPress allow...
CVE-2013-7352——Cross-site request forgery (CSRF) vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote attackers t...
CVE-2013-0735——Multiple SQL injection vulnerabilities in wpf.class.php in the Mingle Forum plugin before 1.0.34 for WordPress allow rem...
CVE-2013-3484——Multiple cross-site scripting (XSS) vulnerabilities in dotCMS before 2.3.2 allow remote attackers to inject arbitrary we...
CVE-2013-2945——SQL injection vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote authenticated administrators to...
CVE-2013-0729——Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary c...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now