2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6332 | — | — | 2.2% | Feb 6, 2014 | Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authenticated users to exec... |
| CVE-2013-2962 | — | — | 0.3% | Feb 6, 2014 | Buffer overflow in the Launcher in IBM WebSphere Transformation Extender 8.4.x before 8.4.0.4 allows local users to caus... |
| CVE-2013-6393 | — | — | 9.3% | Feb 6, 2014 | The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cast, which allows remo... |
| CVE-2013-7130 | — | — | 2.2% | Feb 6, 2014 | The i_create_images_and_backing (aka create_images_and_backing) method in libvirt driver in OpenStack Compute (Nova) Gri... |
| CVE-2013-6490 | — | — | 14.8% | Feb 6, 2014 | The SIMPLE protocol functionality in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a ne... |
| CVE-2013-6489 | — | — | 5.8% | Feb 6, 2014 | Integer signedness error in the MXit functionality in Pidgin before 2.10.8 allows remote attackers to cause a denial of ... |
| CVE-2013-6487 | — | — | 8.2% | Feb 6, 2014 | Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before 2.10.8 allows remote... |
| CVE-2013-6482 | — | — | 2.3% | Feb 6, 2014 | Pidgin before 2.10.8 allows remote MSN servers to cause a denial of service (NULL pointer dereference and crash) via a c... |
| CVE-2013-6481 | — | — | 3.9% | Feb 6, 2014 | libpurple/protocols/yahoo/libymsg.c in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (crash)... |
| CVE-2013-2038 | — | — | 4.2% | Feb 6, 2014 | The NMEA0183 driver in gpsd before 3.9 allows remote attackers to cause a denial of service (daemon termination) and pos... |
| CVE-2013-7321 | — | — | 1.0% | Feb 6, 2014 | Cross-site scripting (XSS) vulnerability in D-Link DAP-2253 Access Point (Rev. A1) with firmware before 1.30 allows remo... |
| CVE-2013-7320 | — | — | 0.7% | Feb 6, 2014 | Cross-site request forgery (CSRF) vulnerability in D-Link DAP-2253 Access Point (Rev. A1) with firmware before 1.30 allo... |
| CVE-2013-7319 | — | — | 4.6% | Feb 6, 2014 | Cross-site scripting (XSS) vulnerability in the Download Manager plugin before 2.5.9 for WordPress allows remote attacke... |
| CVE-2013-6486 | — | — | 3.8% | Feb 6, 2014 | gtkutils.c in Pidgin before 2.10.8 on Windows allows user-assisted remote attackers to execute arbitrary programs via a ... |
| CVE-2013-6485 | — | — | 2.4% | Feb 6, 2014 | Buffer overflow in util.c in libpurple in Pidgin before 2.10.8 allows remote HTTP servers to cause a denial of service (... |
| CVE-2013-6484 | — | — | 2.2% | Feb 6, 2014 | The STUN protocol implementation in libpurple in Pidgin before 2.10.8 allows remote STUN servers to cause a denial of se... |
| CVE-2013-6483 | — | — | 3.9% | Feb 6, 2014 | The XMPP protocol plugin in libpurple in Pidgin before 2.10.8 does not properly determine whether the from address in an... |
| CVE-2013-6479 | — | — | 2.2% | Feb 6, 2014 | util.c in libpurple in Pidgin before 2.10.8 does not properly allocate memory for HTTP responses that are inconsistent w... |
| CVE-2013-6478 | — | — | 3.8% | Feb 6, 2014 | gtkimhtml.c in Pidgin before 2.10.8 does not properly interact with underlying library support for wide Pango layouts, w... |
| CVE-2013-6477 | — | — | 3.9% | Feb 6, 2014 | Multiple integer signedness errors in libpurple in Pidgin before 2.10.8 allow remote attackers to cause a denial of serv... |
| CVE-2013-5983 | — | — | 2.2% | Feb 6, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in GuppY before 4.6.28 allow remote attackers to inject arbitrary we... |
| CVE-2013-4463 | — | — | 0.4% | Feb 6, 2014 | OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly verify the virtual size of a QCOW2 image, which a... |
| CVE-2013-2074 | — | — | 2.0% | Feb 5, 2014 | kioslave/http/http.cpp in KIO in kdelibs 4.10.3 and earlier allows attackers to discover credentials via a crafted reque... |
| CVE-2013-4449 | — | — | 10.9% | Feb 5, 2014 | The rwm overlay in OpenLDAP 2.4.23, 2.4.36, and earlier does not properly count references, which allows remote attacker... |
| CVE-2013-1880 | — | — | 5.9% | Feb 5, 2014 | Cross-site scripting (XSS) vulnerability in the Portfolio publisher servlet in the demo web application in Apache Active... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now