2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6835 | — | — | 6.8% | Mar 14, 2014 | TelephonyUI Framework in Apple iOS 7 before 7.1, when Safari is used, does not require user confirmation for FaceTime au... |
| CVE-2013-6442 | — | — | 4.1% | Mar 14, 2014 | The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL duri... |
| CVE-2013-6209 | — | — | 2.7% | Mar 14, 2014 | Unspecified vulnerability in rpc.lockd in the NFS subsystem in HP HP-UX B.11.11 and B.11.23 allows remote attackers to c... |
| CVE-2013-6206 | — | — | 3.1% | Mar 14, 2014 | Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows remote attacker... |
| CVE-2013-6205 | — | — | 0.3% | Mar 14, 2014 | Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows local users to ... |
| CVE-2013-6188 | — | — | 1.0% | Mar 14, 2014 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 7.1 through 7.2.2 allows remote a... |
| CVE-2013-5133 | — | — | 1.7% | Mar 14, 2014 | Backup in Apple iOS before 7.1 does not properly restrict symlinks, which allows remote attackers to overwrite files dur... |
| CVE-2013-4846 | — | — | 2.2% | Mar 14, 2014 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.3 allows remote attackers to obtain sensitive ... |
| CVE-2013-4496 | — | — | 10.6% | Mar 14, 2014 | Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection m... |
| CVE-2013-3729 | — | — | 1.2% | Mar 13, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Kasseler CMS before 2 r1232 allow remote attackers to hija... |
| CVE-2013-3728 | — | — | 3.0% | Mar 13, 2014 | Cross-site scripting (XSS) vulnerability in Kasseler CMS before 2 r1232 allows remote authenticated users with permissio... |
| CVE-2013-3727 | — | — | 2.9% | Mar 13, 2014 | SQL injection vulnerability in Kasseler CMS before 2 r1232 allows remote authenticated users to execute arbitrary SQL co... |
| CVE-2013-7335 | — | — | 1.2% | Mar 12, 2014 | Open redirect vulnerability in DotNetNuke (DNN) before 6.2.9 and 7.x before 7.1.1 allows remote attackers to redirect us... |
| CVE-2013-5117 | — | — | 2.4% | Mar 12, 2014 | SQL injection vulnerability in the RSS page (DNNArticleRSS.aspx) in the ZLDNN DNNArticle module before 10.1 for DotNetNu... |
| CVE-2013-4649 | — | — | 2.5% | Mar 12, 2014 | Cross-site scripting (XSS) vulnerability in DotNetNuke (DNN) before 6.2.9 and 7.x before 7.1.1 allows remote attackers t... |
| CVE-2013-3943 | — | — | 0.9% | Mar 12, 2014 | Cross-site scripting (XSS) vulnerability in DotNetNuke (DNN) before 6.2.9 and 7.x before 7.1.1 allows remote authenticat... |
| CVE-2013-1636 | — | — | 6.3% | Mar 12, 2014 | Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in ... |
| CVE-2013-5639 | — | — | 7.1% | Mar 11, 2014 | Directory traversal vulnerability in users/login.php in Gnew 2013.1 and earlier allows remote attackers to read arbitrar... |
| CVE-2013-4467 | — | — | 32.8% | Mar 11, 2014 | Multiple SQL injection vulnerabilities in the agent interface (agc/) in VICIDIAL dialer (aka Asterisk GUI client) 2.8-40... |
| CVE-2013-4433 | — | — | 1.2% | Mar 11, 2014 | Cross-site scripting (XSS) vulnerability in XHProf before 0.9.4 allows remote attackers to inject arbitrary web script o... |
| CVE-2013-4413 | — | — | 2.9% | Mar 11, 2014 | Directory traversal vulnerability in controller/concerns/render_redirect.rb in the Wicked gem before 1.0.1 for Ruby allo... |
| CVE-2013-4198 | — | — | 1.1% | Mar 11, 2014 | mail_password.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allows remote authenticated user... |
| CVE-2013-4199 | — | — | 1.1% | Mar 11, 2014 | (1) cb_decode.py and (2) linkintegrity.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allow r... |
| CVE-2013-4197 | — | — | 1.2% | Mar 11, 2014 | member_portrait.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 allows remote authenticated us... |
| CVE-2013-4196 | — | — | 1.4% | Mar 11, 2014 | The object manager implementation (objectmanager.py) in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now