2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-7232——SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL comm...
CVE-2013-7231——Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows rem...
CVE-2013-5222——Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Server 10.1 allow remote authenticated users to i...
CVE-2013-5220——goform/login on the HOT HOTBOX router with software 2.1.11 allows remote attackers to cause a denial of service (device ...
CVE-2013-5219——Directory traversal vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to read arbitrar...
CVE-2013-5218——Cross-site scripting (XSS) vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to inject...
CVE-2013-5210——Cross-site scripting (XSS) vulnerability in the GUI login page in ADTRAN AOS before R10.8.1 on the NetVanta 7100 allows ...
CVE-2013-5039——Cross-site request forgery (CSRF) vulnerability in goform/wlanBasicSecurity on the HOT HOTBOX router with software 2.1.1...
CVE-2013-5038——The HOT HOTBOX router with software 2.1.11 allows remote attackers to bypass authentication by configuring a source IP a...
CVE-2013-5037——The HOT HOTBOX router with software 2.1.11 has a default WPS PIN of 12345670, which makes it easier for remote attackers...
CVE-2013-4858——Microsoft Windows Movie Maker 2.1.4026.0 on Windows XP SP3 allows remote attackers to cause a denial of service (applica...
CVE-2013-6198——Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 ...
CVE-2013-6197——Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remot...
CVE-2013-6189——Unspecified vulnerability in the Archive Query Server in HP Application Information Optimizer (formerly HP Database Arch...
CVE-2013-5583——Cross-site scripting (XSS) vulnerability in libraries/idna_convert/example.php in Joomla! 3.1.5 allows remote attackers ...
CVE-2013-3846——Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code o...
CVE-2013-2504——Cross-site scripting (XSS) vulnerability in SPS/Portal/default.aspx in Service Desk in Matrix42 Service Store 5.3 SP3 (a...
CVE-2013-7149——SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver ...
CVE-2013-6981——Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via frag...
CVE-2013-6932——Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used, allows user-assisted remote...
CVE-2013-6929——SQL injection vulnerability in Cybozu Garoon 3.7 SP2 and earlier allows remote authenticated users to execute arbitrary ...
CVE-2013-6886——RealVNC VNC 5.0.6 on Mac OS X, Linux, and UNIX allows local users to gain privileges via a crafted argument to the (1) v...
CVE-2013-6812——The ONEDC app before 1.7 for iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-m...
CVE-2013-6808——Cross-site scripting (XSS) vulnerability in lib/NSSDropoff.php in ZendTo before 4.11-13 allows remote attackers to injec...
CVE-2013-6182——Unquoted Windows search path vulnerability in EMC Replication Manager before 5.5 allows local users to gain privileges v...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now