2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2013-3311HIGH7.5Directory traversal vulnerability in the Loftek Nexus 543 IP Camera allows remote attackers to read arbitrary files via ...
CVE-2013-7172HIGH7.8Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within ...
CVE-2013-1817HIGH7.5MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers t...
CVE-2013-1816HIGH7.5MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash...
CVE-2013-7089HIGH7.5ClamAV before 0.97.7: dbg_printhex possible information leak
CVE-2013-3070HIGH7.5An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web inter...
CVE-2013-3366HIGH8.8Undocumented TELNET service in TRENDnet TEW-812DRU when a web page named backdoor contains an HTML parameter of password...
CVE-2013-4655HIGH7.5Symlink Traversal vulnerability in Belkin N900 due to misconfiguration in the SMB service.
CVE-2013-1889HIGH7.5mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI ...
CVE-2013-1809HIGH7.5Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to t...
CVE-2013-1771HIGH7.5The web server Monkeyd produces a world-readable log (/var/log/monkeyd/master.log) on gentoo.
CVE-2013-6364HIGH8.8Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book
CVE-2013-4374HIGH7.1An insecurity temporary file vulnerability exists in RHQ Mongo DB Drift Server through 2013-09-25 when unpacking zipped ...
CVE-2013-4251HIGH7.8The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.
CVE-2013-4105HIGH7.5Cryptocat before 2.0.22 has Multiparty Encryption Scheme Information Disclosure
CVE-2013-2257HIGH7.5Cryptocat before 2.0.42 has Group Chat ECC Private Key Generation Brute Force Weakness
CVE-2013-4104HIGH7.5Cryptocat before 2.0.22 has weak encryption in the Socialist Millionnaire Protocol
CVE-2013-2262HIGH7.5Cryptocat strophe.js before 2.0.22 has information disclosure
CVE-2013-2261HIGH7.5Cryptocat before 2.0.22 Chrome Extension 'img/keygen.gif' has Information Disclosure
CVE-2013-4100HIGH7.5Cryptocat before 2.0.22 has Remote Denial of Service via username
CVE-2013-4412HIGH7.5slim has NULL pointer dereference when using crypt() method from glibc 2.17
CVE-2013-0165HIGH7.3cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift does not properly create files in /tmp.
CVE-2013-4367HIGH7.8ovirt-engine 3.2 running on Linux kernel 3.1 and newer creates certain files world-writeable due to an upstream kernel c...
CVE-2013-2227HIGH7.5GLPI 0.83.7 has Local File Inclusion in common.tabs.php.
CVE-2013-4751HIGH8.1php-symfony2-Validator has loss of information during serialization

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now