2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-2600 | HIGH | 7.5 | 2.3% | Nov 1, 2019 | MiniUPnPd has information disclosure use of snprintf() |
| CVE-2013-2075 | HIGH | 8.8 | 2.2% | Oct 31, 2019 | Multiple buffer overflows in the (1) R5RS char-ready, (2) tcp-accept-ready, and (3) file-select procedures in Chicken th... |
| CVE-2013-2024 | HIGH | 8.8 | 4.5% | Oct 31, 2019 | OS command injection vulnerability in the "qs" procedure from the "utils" module in Chicken before 4.9.0. |
| CVE-2013-2012 | HIGH | 7.3 | 0.4% | Oct 31, 2019 | autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current ... |
| CVE-2013-1391 | HIGH | 7.5 | 76.1% | Oct 30, 2019 | Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Wel... |
| CVE-2013-4848 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities. |
| CVE-2013-4855 | HIGH | 8.8 | 1.5% | Oct 25, 2019 | D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be creat... |
| CVE-2013-7333 | HIGH | 7.5 | 1.1% | Oct 23, 2019 | A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to th... |
| CVE-2013-3703 | HIGH | 8.8 | 0.9% | Jun 8, 2018 | The controller of the Open Build Service API prior to version 2.4.4 is missing a write permission check, allowing an aut... |
| CVE-2013-2830 | HIGH | 7.8 | 3.7% | Feb 8, 2018 | Use-after-free vulnerability in SumatraPDF Reader 2.x before 2.2.1 allows remote attackers to execute arbitrary code via... |
| CVE-2013-6648 | HIGH | 7.5 | 0.7% | Apr 13, 2017 | SkRegion::setPath in Skia allows remote attackers to cause a denial of service (crash). |
| CVE-2013-3632 | HIGH | 8.8 | 56.8% | Sep 29, 2014 | The Cron service in rpc.php in OpenMediaVault allows remote authenticated users to execute cron jobs as arbitrary users ... |
| CVE-2013-2597 | HIGH | 8.4 | 1.5% | Aug 31, 2014 | Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6... |
| CVE-2013-6040 | HIGH | 8.1 | 7.4% | Jan 21, 2014 | MW6 Aztec, DataMatrix, and MaxiCode ActiveX controls before version 4.0 vulnerable to arbitrary code via a crafted HTML ... |
| CVE-2013-7030 | HIGH | 7.3 | 5.3% | Dec 12, 2013 | The TFTP service in Cisco Unified Communications Manager (aka CUCM or Unified CM) allows remote attackers to obtain sens... |
| CVE-2013-5065 | HIGH | 7.8 | 34.9% | Nov 28, 2013 | NDProxy.sys in the kernel in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges ... |
| CVE-2013-6282 | HIGH | 8.8 | 39.7% | Nov 20, 2013 | The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not ... |
| CVE-2013-4588 | HIGH | 7 | 0.4% | Nov 20, 2013 | Multiple stack-based buffer overflows in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 2.6.33, when CONFIG_I... |
| CVE-2013-3918 | HIGH | 8.8 | 73.9% | Nov 12, 2013 | The InformationCardSigninHelper Class ActiveX control in icardie.dll in Microsoft Windows XP SP2 and SP3, Windows Server... |
| CVE-2013-4508 | HIGH | 7.5 | 2.6% | Nov 8, 2013 | lighttpd before 1.4.34, when SNI is enabled, configures weak SSL ciphers, which makes it easier for remote attackers to ... |
| CVE-2013-3906 | HIGH | 7.8 | 85.0% | Nov 6, 2013 | GDI+ in Microsoft Windows Vista SP2 and Server 2008 SP2; Office 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compati... |
| CVE-2013-3897 | HIGH | 8.8 | 77.5% | Oct 9, 2013 | Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allo... |
| CVE-2013-3894 | HIGH | 8.1 | 43.1% | Oct 9, 2013 | The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server ... |
| CVE-2013-3888 | HIGH | 8.4 | 1.0% | Oct 9, 2013 | dxgkrnl.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7... |
| CVE-2013-3893 | HIGH | 8.8 | 85.9% | Sep 18, 2013 | Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 throug... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now