2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6301 | — | — | 0.8% | Mar 5, 2014 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.... |
| CVE-2013-6300 | — | — | 0.8% | Mar 5, 2014 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.... |
| CVE-2013-6299 | — | — | 0.8% | Mar 5, 2014 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.... |
| CVE-2013-5468 | — | — | 1.2% | Mar 5, 2014 | IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.0, ACSWeb in Algo Security Access Control Ma... |
| CVE-2013-6668 | — | — | 5.4% | Mar 5, 2014 | Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allo... |
| CVE-2013-6667 | — | — | 1.3% | Mar 5, 2014 | Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.146 allow attackers to cause a denial of service ... |
| CVE-2013-6666 | — | — | 1.2% | Mar 5, 2014 | The PepperFlashRendererHost::OnNavigate function in renderer/pepper/pepper_flash_renderer_host.cc in Google Chrome befor... |
| CVE-2013-6665 | — | — | 1.4% | Mar 5, 2014 | Heap-based buffer overflow in the ResourceProvider::InitializeSoftware function in cc/resources/resource_provider.cc in ... |
| CVE-2013-6664 | — | — | 1.3% | Mar 5, 2014 | Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html/FormAssociatedEleme... |
| CVE-2013-6663 | — | — | 1.8% | Mar 5, 2014 | Use-after-free vulnerability in the SVGImage::setContainerSize function in core/svg/graphics/SVGImage.cpp in the SVG imp... |
| CVE-2013-6730 | — | — | 1.9% | Mar 4, 2014 | IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x before 7.0.0.2 CF27, and 8.0.0.... |
| CVE-2013-6493 | — | — | 0.5% | Mar 3, 2014 | The LiveConnect implementation in plugin/icedteanp/IcedTeaNPPlugin.cc in IcedTea-Web before 1.4.2 allows local users to ... |
| CVE-2013-4981 | — | — | 6.9% | Mar 3, 2014 | Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possi... |
| CVE-2013-4980 | — | — | 6.9% | Mar 3, 2014 | Buffer overflow in the RTSP Packet Handler in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possi... |
| CVE-2013-4977 | — | — | 16.7% | Mar 3, 2014 | Buffer overflow in the RTSP Packet Handler in Hikvision DS-2CD7153-E IP camera with firmware 4.1.0 b130111 (Jan 2013), a... |
| CVE-2013-3487 | — | — | 2.3% | Mar 3, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the security log in the BulletProof Security plugin before .49 fo... |
| CVE-2013-3260 | — | — | 2.7% | Mar 3, 2014 | Heap-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code ... |
| CVE-2013-3259 | — | — | 3.0% | Mar 3, 2014 | Stack-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code... |
| CVE-2013-1409 | — | — | 4.5% | Mar 3, 2014 | Cross-site scripting (XSS) vulnerability in the CommentLuv plugin before 2.92.4 for WordPress allows remote attackers to... |
| CVE-2013-4710 | — | — | 42.6% | Mar 3, 2014 | Android 3.0 through 4.1.x on Disney Mobile, eAccess, KDDI, NTT DOCOMO, SoftBank, and other devices does not properly imp... |
| CVE-2013-4054 | — | — | 2.3% | Mar 2, 2014 | Directory traversal vulnerability in WMQ Telemetry in IBM WebSphere MQ 7.5 before 7.5.0.3 allows remote attackers to rea... |
| CVE-2013-2498 | — | — | 1.3% | Mar 1, 2014 | SQL injection vulnerability in the login page in flexycms/modules/user/user_manager.php in SimpleHRM 2.3, 2.2, and earli... |
| CVE-2013-3712 | — | — | 1.4% | Feb 26, 2014 | SUSE Studio Onsite 1.3.x before 1.3.6 and SUSE Studio Extension for System z 1.3 uses "static" secret tokens, which has ... |
| CVE-2013-7331 | MEDIUM | 6.5 | 58.0% | Feb 26, 2014 | The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the exist... |
| CVE-2013-7332 | — | — | 13.3% | Feb 26, 2014 | The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier does not properly detect recursion during enti... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now