2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-5891——Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.33 and earlier and 5.6.13 and earlier allows...
CVE-2013-7205——Off-by-one error in the process_cgivars function in contrib/daemonchk.c in Nagios Core 3.5.1, 4.0.2, and earlier allows ...
CVE-2013-7108——Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and earlier, and Icinga before 1.8.5, 1.9 before 1.9.4, and 1.10...
CVE-2013-7107——Cross-site request forgery (CSRF) vulnerability in cmd.cgi in Icinga 1.8.5, 1.9.4, 1.10.2, and earlier allows remote att...
CVE-2013-7106——Multiple stack-based buffer overflows in Icinga before 1.8.5, 1.9 before 1.9.4, and 1.10 before 1.10.2 allow remote auth...
CVE-2013-6398——The virtual router in Apache CloudStack before 4.2.1 does not preserve the source restrictions in firewall rules after b...
CVE-2013-6123——Multiple array index errors in drivers/media/video/msm/server/msm_cam_server.c in the MSM camera driver for the Linux ke...
CVE-2013-7291——memcached before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (crash) via ...
CVE-2013-7290——The do_item_get function in items.c in memcached 1.4.4 and other versions before 1.4.17, when running in verbose mode, a...
CVE-2013-7239——memcached before 1.4.17 allows remote attackers to bypass authentication by sending an invalid request with SASL credent...
CVE-2013-0179——The process_bin_delete function in memcached.c in memcached 1.4.4 and other versions before 1.4.17, when running in verb...
CVE-2013-7292——VASCO IDENTIKEY Authentication Server (IAS) 3.4.x allows remote authenticated users to bypass Active Directory (AD) auth...
CVE-2013-6028——Multiple cross-site request forgery (CSRF) vulnerabilities in Atmail Webmail Server before 7.2 allow remote attackers to...
CVE-2013-6017——Cross-site scripting (XSS) vulnerability in Atmail Webmail Server before 7.2 allows remote attackers to inject arbitrary...
CVE-2013-5034——Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe...
CVE-2013-5033——Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe...
CVE-2013-5032——Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe...
CVE-2013-5031——Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe...
CVE-2013-4517——Apache Santuario XML Security for Java before 1.5.6, when applying Transforms, allows remote attackers to cause a denial...
CVE-2013-3713——The image creation configuration in aaa_base before 16.26.1 for openSUSE 13.1 KDE adds the root user to the "users" grou...
CVE-2013-2050——SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management Engine (CFME) 5.1 and Mana...
CVE-2013-7289——Multiple cross-site scripting (XSS) vulnerabilities in register.php in Andy's PHP Knowledgebase (Aphpkb) before 0.95.8 a...
CVE-2013-7288——Cross-site scripting (XSS) vulnerability in the mycode_parse_video function in inc/class_parser.php in MyBB (aka MyBulle...
CVE-2013-5011——Unquoted Windows search path vulnerability in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and ...
CVE-2013-5010——The Application/Device Control (ADC) component in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now