2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6731 | — | — | 0.8% | Feb 26, 2014 | IBM Netezza Performance Portal 2.x before 2.0.0.3 allows remote authenticated users to change arbitrary passwords via an... |
| CVE-2013-6204 | — | — | 5.5% | Feb 26, 2014 | The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 all... |
| CVE-2013-6203 | — | — | 5.5% | Feb 26, 2014 | The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6.4, 7.0, and 7.1 all... |
| CVE-2013-4841 | — | — | 10.4% | Feb 26, 2014 | Unspecified vulnerability in dbd_manager in LeftHand OS before 11.0 in HP StoreVirtual 4000 and StoreVirtual VSA Softwar... |
| CVE-2013-4590 | — | — | 9.5% | Feb 26, 2014 | Apache Tomcat before 6.0.39, 7.x before 7.0.50, and 8.x before 8.0.0-RC10 allows attackers to obtain "Tomcat internals" ... |
| CVE-2013-4322 | — | — | 9.5% | Feb 26, 2014 | Apache Tomcat before 6.0.39, 7.x before 7.0.50, and 8.x before 8.0.0-RC10 processes chunked transfer coding without prop... |
| CVE-2013-4286 | — | — | 16.8% | Feb 26, 2014 | Apache Tomcat before 6.0.39, 7.x before 7.0.47, and 8.x before 8.0.0-RC3, when an HTTP connector or AJP connector is use... |
| CVE-2013-2824 | — | — | 1.8% | Feb 26, 2014 | Schneider Electric StruxureWare SCADA Expert Vijeo Citect 7.40, Vijeo Citect 7.20 through 7.30SP1, CitectSCADA 7.20 thro... |
| CVE-2013-6047 | — | — | 1.2% | Feb 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the site creation interface in ikiwiki-hosting before 0.20131025 ... |
| CVE-2013-6661 | — | — | 1.3% | Feb 24, 2014 | Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.117 allow attackers to bypass the sandbox protect... |
| CVE-2013-6660 | — | — | 0.9% | Feb 24, 2014 | The drag-and-drop implementation in Google Chrome before 33.0.1750.117 does not properly restrict the information in Web... |
| CVE-2013-6659 | — | — | 0.8% | Feb 24, 2014 | The SSLClientSocketNSS::Core::OwnAuthCertHandler function in net/socket/ssl_client_socket_nss.cc in Google Chrome before... |
| CVE-2013-6658 | — | — | 2.1% | Feb 24, 2014 | Multiple use-after-free vulnerabilities in the layout implementation in Blink, as used in Google Chrome before 33.0.1750... |
| CVE-2013-6657 | — | — | 1.2% | Feb 24, 2014 | core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, inserts the ... |
| CVE-2013-6656 | — | — | 1.1% | Feb 24, 2014 | The XSSAuditor::init function in core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome b... |
| CVE-2013-6655 | — | — | 1.3% | Feb 24, 2014 | Use-after-free vulnerability in Blink, as used in Google Chrome before 33.0.1750.117, allows remote attackers to cause a... |
| CVE-2013-6654 | — | — | 1.3% | Feb 24, 2014 | The SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp in Blink, as used in Google Chr... |
| CVE-2013-6653 | — | — | 1.3% | Feb 24, 2014 | Use-after-free vulnerability in the web contents implementation in Google Chrome before 33.0.1750.117 allows remote atta... |
| CVE-2013-6652 | — | — | 1.2% | Feb 24, 2014 | Directory traversal vulnerability in sandbox/win/src/named_pipe_dispatcher.cc in Google Chrome before 33.0.1750.117 on W... |
| CVE-2013-6202 | — | — | 2.3% | Feb 24, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 9.30, 9.31, 9.32, and 9.33 allow remote... |
| CVE-2013-2817 | — | — | 5.9% | Feb 24, 2014 | An ActiveX control in IcoLaunch.dll in Mitsubishi Electric Automation MC-WorX Suite 8.02 allows user-assisted remote att... |
| CVE-2013-6952 | — | — | 3.8% | Feb 22, 2014 | The Belkin WeMo Home Automation firmware before 3949 has a hardcoded GPG key, which makes it easier for remote attackers... |
| CVE-2013-6951 | — | — | 0.6% | Feb 22, 2014 | The Belkin WeMo Home Automation firmware before 3949 does not maintain a set of Certification Authority public keys, whi... |
| CVE-2013-6950 | — | — | 1.1% | Feb 22, 2014 | The Belkin WeMo Home Automation firmware before 3949 does not use SSL for the distribution feed, which allows man-in-the... |
| CVE-2013-6949 | — | — | 1.9% | Feb 22, 2014 | The Belkin WeMo Home Automation firmware before 3949 does not properly use the STUN and TURN protocols, which allows rem... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now