2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-7223 | — | — | 1.2% | Jan 2, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Fat Free CRM before 0.12.1 allow remote attackers to hijac... |
| CVE-2013-7222 | — | — | 2.4% | Jan 2, 2014 | config/initializers/secret_token.rb in Fat Free CRM before 0.12.1 has a fixed FatFreeCRM::Application.config.secret_toke... |
| CVE-2013-6187 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6186 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6185 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6184 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6183 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6179 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-5385 | — | — | 3.5% | Jan 2, 2014 | The OSPF implementation in IBM i 6.1 and 7.1, in z/OS on zSeries servers, and in Networking Operating System (aka NOS, f... |
| CVE-2013-5211 | — | — | 97.5% | Jan 2, 2014 | The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service... |
| CVE-2013-3289 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3284 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3283 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3282 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6450 | — | — | 14.5% | Jan 1, 2014 | The DTLS retransmission implementation in OpenSSL 1.0.0 before 1.0.0l and 1.0.1 before 1.0.1f does not properly maintain... |
| CVE-2013-3667 | — | — | 1.8% | Dec 31, 2013 | The software update mechanism as used in Bare Bones Software Yojimbo before 4.0, TextWrangler before 4.5.3, and BBEdit b... |
| CVE-2013-6987 | — | — | 14.9% | Dec 31, 2013 | Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation Manager (DSM) before ... |
| CVE-2013-6459 | — | — | 2.2% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to injec... |
| CVE-2013-5573 | — | — | 5.4% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the default markup formatter in Jenkins 1.523 allows remote attackers to inj... |
| CVE-2013-7242 | — | — | 1.8% | Dec 31, 2013 | SQL injection vulnerability in zp-core/zp-extensions/wordpress_import.php in Zenphoto before 1.4.5.4 allows remote authe... |
| CVE-2013-7241 | — | — | 2.0% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the export function in zp-core/zp-extensions/mergedRSS.php in Zenphoto befor... |
| CVE-2013-6983 | — | — | 2.1% | Dec 31, 2013 | SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to e... |
| CVE-2013-7209 | — | — | 2.8% | Dec 30, 2013 | Cross-site request forgery (CSRF) vulnerability in admBase/login.page in the Admin module in JForum allows remote attack... |
| CVE-2013-7233 | — | — | 3.8% | Dec 30, 2013 | Cross-site request forgery (CSRF) vulnerability in the retrospam component in wp-admin/options-discussion.php in WordPre... |
| CVE-2013-7232 | — | — | 2.0% | Dec 30, 2013 | SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL comm... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now