2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4240 | — | — | 2.8% | Apr 2, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the HMS Testimonials plugin before 2.0.11 for WordPress al... |
| CVE-2013-3213 | — | — | 3.2% | Apr 2, 2014 | Multiple SQL injection vulnerabilities in vTiger CRM 5.0.0 through 5.4.0 allow remote attackers to execute arbitrary SQL... |
| CVE-2013-1770 | — | — | 2.2% | Apr 2, 2014 | Cross-site scripting (XSS) vulnerability in views_view.php in Ganglia Web 3.5.7 allows remote attackers to inject arbitr... |
| CVE-2013-3588 | — | — | 2.2% | Apr 2, 2014 | The web management interface on Zyxel P660 devices allows remote attackers to cause a denial of service (reboot) via a f... |
| CVE-2013-7350 | — | — | 1.4% | Apr 1, 2014 | Multiple unspecified vulnerabilities in Check Point Security Gateway 80 R71.x before R71.45 (730159141) and R75.20.x bef... |
| CVE-2013-7348 | — | — | 0.4% | Apr 1, 2014 | Double free vulnerability in the ioctx_alloc function in fs/aio.c in the Linux kernel before 3.12.4 allows local users t... |
| CVE-2013-1869 | — | — | 1.8% | Apr 1, 2014 | CRLF injection vulnerability in spacewalk-java before 2.1.148-1 and Red Hat Network (RHN) Satellite 5.6 allows remote at... |
| CVE-2013-0662 | — | — | 22.1% | Apr 1, 2014 | Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow... |
| CVE-2013-7349 | — | — | 2.7% | Apr 1, 2014 | Multiple SQL injection vulnerabilities in Gnew 2013.1 allow remote attackers to execute arbitrary SQL commands via the (... |
| CVE-2013-5640 | — | — | 2.4% | Apr 1, 2014 | Multiple SQL injection vulnerabilities in Gnew 2013.1 allow remote attackers to execute arbitrary SQL commands via the (... |
| CVE-2013-2278 | — | — | 3.5% | Apr 1, 2014 | Unspecified vulnerability in War FTP Daemon (warftpd) 1.82, when running as a Windows service, allows remote attackers t... |
| CVE-2013-6775 | — | — | 1.6% | Mar 31, 2014 | The Chainfire SuperSU package before 1.69 for Android allows attackers to gain privileges via the (1) backtick or (2) $(... |
| CVE-2013-6770 | — | — | 0.7% | Mar 31, 2014 | The CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.3 and 4.4 does not properly restrict the set ... |
| CVE-2013-6774 | — | — | 1.6% | Mar 31, 2014 | Untrusted search path vulnerability in the ChainsDD Superuser package 3.1.3 for Android 4.2.x and earlier, CyanogenMod/C... |
| CVE-2013-6769 | — | — | 1.6% | Mar 31, 2014 | The CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android allows attackers to gain privileges via shell m... |
| CVE-2013-6768 | — | — | 1.1% | Mar 31, 2014 | Untrusted search path vulnerability in the CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.2.x an... |
| CVE-2013-7347 | — | — | 0.3% | Mar 31, 2014 | Luci in Red Hat Conga does not properly enforce the user session timeout, which might allow attackers to gain access to ... |
| CVE-2013-6211 | — | — | 2.1% | Mar 29, 2014 | Unspecified vulnerability in HP StoreOnce Virtual Storage Appliance (VSA) before 3.7.2, StoreOnce 26xx and 4210 iSCSI Ba... |
| CVE-2013-2695 | — | — | 1.6% | Mar 28, 2014 | Cross-site scripting (XSS) vulnerability in invite.php in the WP Symposium plugin before 13.04 for WordPress allows remo... |
| CVE-2013-2694 | — | — | 2.0% | Mar 28, 2014 | Open redirect vulnerability in invite.php in the WP Symposium plugin 13.04 for WordPress allows remote attackers to redi... |
| CVE-2013-0807 | — | — | 4.0% | Mar 28, 2014 | Cross-site scripting (XSS) vulnerability in the NewSectionPrompt function in include/tool/editing_page.php in gpEasy CMS... |
| CVE-2013-0734 | — | — | 2.1% | Mar 28, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote ... |
| CVE-2013-7346 | — | — | 0.6% | Mar 27, 2014 | Cross-site request forgery (CSRF) vulnerability in Symphony CMS before 2.3.2 allows remote attackers to hijack the authe... |
| CVE-2013-3481 | — | — | 5.7% | Mar 27, 2014 | Stack-based buffer overflow in Artweaver Plus and Free before 3.1.5 allows remote attackers to execute arbitrary code vi... |
| CVE-2013-2559 | — | — | 2.4% | Mar 27, 2014 | SQL injection vulnerability in Symphony CMS before 2.3.2 allows remote authenticated users to execute arbitrary SQL comm... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now