2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-2252Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA
CVE-2013-2235Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA
CVE-2013-2216Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2013-2180Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. Al...
CVE-2013-2084Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-2069. Reason: This candidate is a reservation du...
CVE-2013-1916HIGH8.8In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upl...
CVE-2013-1891MEDIUM6.5In OpenCart 1.4.7 to 1.5.5.1, implemented anti-traversal code in filemanager.php is ineffective and can be bypassed.
CVE-2013-10004CRITICAL9.8A vulnerability classified as critical was found in Telecommunication Software SAMwin Contact Center Suite 5.1. This vul...
CVE-2013-10003CRITICAL9.8A vulnerability classified as critical has been found in Telecommunication Software SAMwin Contact Center Suite 5.1. Thi...
CVE-2013-10002CRITICAL9.1A vulnerability was found in Telecommunication Software SAMwin Contact Center Suite 5.1. It has been rated as critical. ...
CVE-2013-10001MEDIUM5.9A vulnerability was found in HTC One/Sense 4.x. It has been rated as problematic. Affected by this issue is the certific...
CVE-2013-20004CRITICAL9.8A flaw was found in StarWind iSCSI target. StarWind service does not limit client connections and allocates memory on ea...
CVE-2013-20003HIGH8.3Z-Wave devices from Sierra Designs (circa 2013) and Silicon Labs (using S0 security) may use a known, shared network key...
CVE-2013-1837Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2013-1791Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2013-0344Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2013-4718MEDIUM5.4Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) ITSM 3.0.x before 3.0.9, 3.1.x before 3.1....
CVE-2013-4717HIGH8.8Multiple SQL injection vulnerabilities in Open Ticket Request System (OTRS) Help Desk 3.0.x before 3.0.22, 3.1.x before ...
CVE-2013-6276CRITICAL9.8QNAP F_VioCard 2312 and F_VioGate 2308 have hardcoded entries in authorized_keys files. NOTE: 1. All active models are n...
CVE-2013-20002CRITICAL9.8Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-cont...
CVE-2013-4536HIGH7.8An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to c...
CVE-2013-1055MEDIUM4.3The unity-firefox-extension package could be tricked into dropping a C callback which was still in use, which Firefox wo...
CVE-2013-1054MEDIUM6.5The unity-firefox-extension package could be tricked into destroying the Unity webapps context, causing Firefox to crash...
CVE-2013-20001HIGH7.5An issue was discovered in OpenZFS through 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs featu...
CVE-2013-2512CRITICAL9.8The ftpd gem 0.2.1 for Ruby allows remote attackers to execute arbitrary OS commands via shell metacharacters in a LIST ...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now