2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-7205 | — | — | 4.1% | Jan 15, 2014 | Off-by-one error in the process_cgivars function in contrib/daemonchk.c in Nagios Core 3.5.1, 4.0.2, and earlier allows ... |
| CVE-2013-7108 | — | — | 59.5% | Jan 15, 2014 | Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and earlier, and Icinga before 1.8.5, 1.9 before 1.9.4, and 1.10... |
| CVE-2013-7107 | — | — | 1.0% | Jan 15, 2014 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in Icinga 1.8.5, 1.9.4, 1.10.2, and earlier allows remote att... |
| CVE-2013-7106 | — | — | 2.5% | Jan 15, 2014 | Multiple stack-based buffer overflows in Icinga before 1.8.5, 1.9 before 1.9.4, and 1.10 before 1.10.2 allow remote auth... |
| CVE-2013-6398 | — | — | 3.7% | Jan 15, 2014 | The virtual router in Apache CloudStack before 4.2.1 does not preserve the source restrictions in firewall rules after b... |
| CVE-2013-6123 | — | — | 0.3% | Jan 14, 2014 | Multiple array index errors in drivers/media/video/msm/server/msm_cam_server.c in the MSM camera driver for the Linux ke... |
| CVE-2013-7291 | — | — | 0.9% | Jan 13, 2014 | memcached before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (crash) via ... |
| CVE-2013-7290 | — | — | 0.9% | Jan 13, 2014 | The do_item_get function in items.c in memcached 1.4.4 and other versions before 1.4.17, when running in verbose mode, a... |
| CVE-2013-7239 | — | — | 1.2% | Jan 13, 2014 | memcached before 1.4.17 allows remote attackers to bypass authentication by sending an invalid request with SASL credent... |
| CVE-2013-0179 | — | — | 1.5% | Jan 13, 2014 | The process_bin_delete function in memcached.c in memcached 1.4.4 and other versions before 1.4.17, when running in verb... |
| CVE-2013-7292 | — | — | 1.1% | Jan 13, 2014 | VASCO IDENTIKEY Authentication Server (IAS) 3.4.x allows remote authenticated users to bypass Active Directory (AD) auth... |
| CVE-2013-6028 | — | — | 0.8% | Jan 12, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Atmail Webmail Server before 7.2 allow remote attackers to... |
| CVE-2013-6017 | — | — | 4.4% | Jan 12, 2014 | Cross-site scripting (XSS) vulnerability in Atmail Webmail Server before 7.2 allows remote attackers to inject arbitrary... |
| CVE-2013-5034 | — | — | 1.7% | Jan 12, 2014 | Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe... |
| CVE-2013-5033 | — | — | 1.7% | Jan 12, 2014 | Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe... |
| CVE-2013-5032 | — | — | 1.7% | Jan 12, 2014 | Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe... |
| CVE-2013-5031 | — | — | 1.7% | Jan 12, 2014 | Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a differe... |
| CVE-2013-4517 | — | — | 8.9% | Jan 11, 2014 | Apache Santuario XML Security for Java before 1.5.6, when applying Transforms, allows remote attackers to cause a denial... |
| CVE-2013-3713 | — | — | 0.4% | Jan 11, 2014 | The image creation configuration in aaa_base before 16.26.1 for openSUSE 13.1 KDE adds the root user to the "users" grou... |
| CVE-2013-2050 | — | — | 16.1% | Jan 11, 2014 | SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management Engine (CFME) 5.1 and Mana... |
| CVE-2013-7289 | — | — | 1.2% | Jan 10, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in register.php in Andy's PHP Knowledgebase (Aphpkb) before 0.95.8 a... |
| CVE-2013-7288 | — | — | 1.2% | Jan 10, 2014 | Cross-site scripting (XSS) vulnerability in the mycode_parse_video function in inc/class_parser.php in MyBB (aka MyBulle... |
| CVE-2013-5011 | — | — | 0.5% | Jan 10, 2014 | Unquoted Windows search path vulnerability in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and ... |
| CVE-2013-5010 | — | — | 0.3% | Jan 10, 2014 | The Application/Device Control (ADC) component in the client in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 ... |
| CVE-2013-5009 | — | — | 0.8% | Jan 10, 2014 | The Management Console in Symantec Endpoint Protection (SEP) 11.x before 11.0.7.4 and 12.x before 12.1.2 RU2 and Endpoin... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now