2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4978 | — | — | 8.2% | Feb 5, 2014 | Stack-based buffer overflow in AloahaPDFViewer 5.0.0.7 and earlier in Aloaha PDF Suite FREE allows remote attackers to e... |
| CVE-2013-3639 | — | — | 3.2% | Feb 5, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Xaraya 2.4.0-b1 and earlier allow remote attackers to inject arbi... |
| CVE-2013-2691 | — | — | 4.3% | Feb 5, 2014 | Stack-based buffer overflow in the JetMPG.ax module in jetAudio 8.0.17 allows remote attackers to execute arbitrary code... |
| CVE-2013-1967 | — | — | 2.2% | Feb 5, 2014 | Cross-site scripting (XSS) vulnerability in flashmediaelement.swf in MediaElement.js before 2.11.2, as used in ownCloud ... |
| CVE-2013-1852 | — | — | 5.2% | Feb 5, 2014 | SQL injection vulnerability in leaguemanager.php in the LeagueManager plugin before 3.8.1 for WordPress allows remote at... |
| CVE-2013-1470 | — | — | 1.9% | Feb 5, 2014 | Cross-site scripting (XSS) vulnerability in calendar/index.php in the Calendar plugin in Geeklog before 1.8.2sr1 and 2.0... |
| CVE-2013-1466 | — | — | 3.8% | Feb 5, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in glFusion before 1.2.2.pl4 allow remote attackers to inject arbitr... |
| CVE-2013-3365 | — | — | 4.1% | Feb 4, 2014 | TRENDnet TEW-812DRU router allows remote authenticated users to execute arbitrary commands via shell metacharacters in t... |
| CVE-2013-3098 | — | — | 1.2% | Feb 4, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in TRENDnet TEW-812DRU router with firmware before 1.0.9.0 al... |
| CVE-2013-7183 | — | — | 3.3% | Feb 4, 2014 | cgi-bin/reboot.cgi on Seowon Intech SWC-9100 routers allows remote attackers to (1) cause a denial of service (reboot) v... |
| CVE-2013-7182 | — | — | 2.4% | Feb 4, 2014 | Cross-site scripting (XSS) vulnerability in firewall/schedule/recurrdlg in Fortinet FortiOS 5.0.5 allows remote attacker... |
| CVE-2013-7181 | — | — | 2.4% | Feb 4, 2014 | Cross-site scripting (XSS) vulnerability in user/ldap_user/add in Fortinet FortiOS 5.0.3 allows remote attackers to inje... |
| CVE-2013-7179 | — | — | 4.1% | Feb 4, 2014 | The ping functionality in cgi-bin/diagnostic.cgi on Seowon Intech SWC-9100 routers allows remote attackers to execute ar... |
| CVE-2013-6035 | — | — | 4.6% | Feb 4, 2014 | The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network Systems 9201, 9450, and 95... |
| CVE-2013-6034 | — | — | 1.7% | Feb 4, 2014 | The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network Systems 9201, 9450, and 95... |
| CVE-2013-6033 | — | — | 1.7% | Feb 4, 2014 | Multiple cross-site scripting (XSS) vulnerabilities on Lexmark W840 through LS.HA.P252, T64x before LS.ST.P344, C935dn t... |
| CVE-2013-6032 | — | — | 3.2% | Feb 4, 2014 | cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC4.BE.P487, X644 and ... |
| CVE-2013-5427 | — | — | 0.6% | Feb 4, 2014 | Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.x be... |
| CVE-2013-4739 | — | — | 0.3% | Feb 3, 2014 | The MSM camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for M... |
| CVE-2013-4738 | — | — | 0.3% | Feb 3, 2014 | Multiple stack-based buffer overflows in the MSM camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation ... |
| CVE-2013-0234 | — | — | 1.5% | Feb 2, 2014 | Cross-site scripting (XSS) vulnerability in the Twitter widget in Elgg before 1.7.17 and 1.8.x before 1.8.13 allows remo... |
| CVE-2013-7301 | — | — | 1.5% | Feb 2, 2014 | Cantata before 1.2.2 does not restrict access to files in the play queue, which allows remote attackers to obtain sensit... |
| CVE-2013-7300 | — | — | 1.5% | Feb 2, 2014 | Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full path... |
| CVE-2013-6491 | — | — | 1.9% | Feb 2, 2014 | The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SSL connections when q... |
| CVE-2013-4331 | — | — | 0.4% | Feb 2, 2014 | Light Display Manager (aka LightDM) 1.4.x before 1.4.3, 1.6.x before 1.6.2, and 1.7.x before 1.7.14 uses 0664 permission... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now