2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3988 | — | — | 1.2% | Feb 14, 2014 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to conduct clic... |
| CVE-2013-6742 | — | — | 1.3% | Feb 14, 2014 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 do not have an off autocomplete attribu... |
| CVE-2013-3983 | — | — | 1.1% | Feb 14, 2014 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 does not validate URLs in Cookie header... |
| CVE-2013-3978 | — | — | 1.2% | Feb 14, 2014 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 does not send the appropriate HTTP resp... |
| CVE-2013-2829 | — | — | 1.3% | Feb 14, 2014 | MatrikonOPC SCADA DNP3 OPC Server 1.2.2.0 and earlier allows remote attackers to cause a denial of service (infinite loo... |
| CVE-2013-6728 | — | — | 1.2% | Feb 14, 2014 | The charting component in IBM WebSphere Dashboard Framework (WDF) 6.1.5 and 7.0.1 allows remote attackers to view or del... |
| CVE-2013-6722 | — | — | 1.3% | Feb 14, 2014 | Unrestricted file upload vulnerability in the Registration/Edit My Profile portlet in IBM WebSphere Portal 7.x before 7.... |
| CVE-2013-5400 | — | — | 2.3% | Feb 14, 2014 | An unspecified servlet in IBM Platform Symphony Developer Edition (DE) 5.2 and 6.1.x through 6.1.1 has hardcoded credent... |
| CVE-2013-5015 | — | — | 28.8% | Feb 14, 2014 | SQL injection vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 11.0 before 11.0.74... |
| CVE-2013-5014 | — | — | 67.6% | Feb 14, 2014 | The management console in Symantec Endpoint Protection Manager (SEPM) 11.0 before 11.0.7405.1424 and 12.1 before 12.1.40... |
| CVE-2013-2585 | — | — | 1.9% | Feb 12, 2014 | Cross-site scripting (XSS) vulnerability in Atmail Webmail Server 6.6.x before 6.6.3 and 7.0.x before 7.0.3 allows remot... |
| CVE-2013-6229 | — | — | 1.8% | Feb 12, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Atmail Webmail Server 7.0.2 allow remote attackers to inject arbi... |
| CVE-2013-3933 | — | — | 1.1% | Feb 11, 2014 | Cross-site scripting (XSS) vulnerability in the JoomShopping (com_joomshopping) component before 4.3.1 for Joomla! allow... |
| CVE-2013-3294 | — | — | 2.5% | Feb 11, 2014 | Multiple SQL injection vulnerabilities in Exponent CMS before 2.2.0 release candidate 1 allow remote attackers to execut... |
| CVE-2013-2639 | — | — | 1.5% | Feb 11, 2014 | Cross-site scripting (XSS) vulnerability in CTERA Cloud Storage OS before 3.2.29.0, 3.2.42.0, and earlier allows remote ... |
| CVE-2013-1980 | — | — | 3.7% | Feb 11, 2014 | Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execut... |
| CVE-2013-1413 | — | — | 1.2% | Feb 11, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in synetics i-doit open 0.9.9-7, i-doit pro 1.0 and earlier, and i-d... |
| CVE-2013-5013 | — | — | 2.0% | Feb 11, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) applianc... |
| CVE-2013-5012 | — | — | 1.5% | Feb 11, 2014 | Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.2 ... |
| CVE-2013-2214 | — | — | 4.3% | Feb 10, 2014 | status.cgi in Nagios 4.0 before 4.0 beta4 and 3.x before 3.5.1 does not properly restrict access to certain users that a... |
| CVE-2013-2055 | — | — | 3.2% | Feb 10, 2014 | Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote ... |
| CVE-2013-6024 | — | — | 0.4% | Feb 10, 2014 | The Edge Client components in F5 BIG-IP APM 10.x, 11.x, 12.x, 13.x, and 14.x, BIG-IP Edge Gateway 10.x and 11.x, and Fir... |
| CVE-2013-4736 | — | — | 1.3% | Feb 10, 2014 | Multiple integer overflows in the JPEG engine drivers in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as us... |
| CVE-2013-2191 | — | — | 0.9% | Feb 8, 2014 | python-bugzilla before 0.9.0 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof Bug... |
| CVE-2013-1904 | — | — | 2.3% | Feb 8, 2014 | Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now