2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2013-7231Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows rem...
CVE-2013-5222Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Server 10.1 allow remote authenticated users to i...
CVE-2013-5220goform/login on the HOT HOTBOX router with software 2.1.11 allows remote attackers to cause a denial of service (device ...
CVE-2013-5219Directory traversal vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to read arbitrar...
CVE-2013-5218Cross-site scripting (XSS) vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to inject...
CVE-2013-5210Cross-site scripting (XSS) vulnerability in the GUI login page in ADTRAN AOS before R10.8.1 on the NetVanta 7100 allows ...
CVE-2013-5039Cross-site request forgery (CSRF) vulnerability in goform/wlanBasicSecurity on the HOT HOTBOX router with software 2.1.1...
CVE-2013-5038The HOT HOTBOX router with software 2.1.11 allows remote attackers to bypass authentication by configuring a source IP a...
CVE-2013-5037The HOT HOTBOX router with software 2.1.11 has a default WPS PIN of 12345670, which makes it easier for remote attackers...
CVE-2013-4858Microsoft Windows Movie Maker 2.1.4026.0 on Windows XP SP3 allows remote attackers to cause a denial of service (applica...
CVE-2013-6198Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 ...
CVE-2013-6197Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21.661 p8 allows remot...
CVE-2013-6189Unspecified vulnerability in the Archive Query Server in HP Application Information Optimizer (formerly HP Database Arch...
CVE-2013-5583Cross-site scripting (XSS) vulnerability in libraries/idna_convert/example.php in Joomla! 3.1.5 allows remote attackers ...
CVE-2013-3846Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code o...
CVE-2013-2504Cross-site scripting (XSS) vulnerability in SPS/Portal/default.aspx in Service Desk in Matrix42 Service Store 5.3 SP3 (a...
CVE-2013-7149SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver ...
CVE-2013-6981Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via frag...
CVE-2013-6932Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used, allows user-assisted remote...
CVE-2013-6929SQL injection vulnerability in Cybozu Garoon 3.7 SP2 and earlier allows remote authenticated users to execute arbitrary ...
CVE-2013-6886RealVNC VNC 5.0.6 on Mac OS X, Linux, and UNIX allows local users to gain privileges via a crafted argument to the (1) v...
CVE-2013-6812The ONEDC app before 1.7 for iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-m...
CVE-2013-6808Cross-site scripting (XSS) vulnerability in lib/NSSDropoff.php in ZendTo before 4.11-13 allows remote attackers to injec...
CVE-2013-6182Unquoted Windows search path vulnerability in EMC Replication Manager before 5.5 allows local users to gain privileges v...
CVE-2013-6181EMC Watch4Net before 6.3 stores cleartext polled-device passwords in the installation repository, which allows local use...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now