2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2013-4110MEDIUM5.3Cryptocat has an Unspecified Chat Participant User List Disclosure
CVE-2013-4107MEDIUM6.1Cryptocat before 2.0.22: cryptocat.js handlePresence() has cross site scripting
CVE-2013-4280MEDIUM5.5Insecure temporary file vulnerability in RedHat vsdm 4.9.6.
CVE-2013-2258MEDIUM5.3Cryptocat before 2.0.22 has Nickname User Impersonation
CVE-2013-4101MEDIUM5.3Cryptocat before 2.0.22 Link Markup Decorator HTML Handling Weakness
CVE-2013-4518MEDIUM5.5RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
CVE-2013-4423MEDIUM5.5CloudForms stores user passwords in recoverable format
CVE-2013-4168MEDIUM6.1Cross-site scripting (XSS) vulnerability in SmokePing 2.6.9 in the start and end time fields.
CVE-2013-2255MEDIUM5.9HTTPSConnections in OpenStack Keystone 2013, OpenStack Compute 2013.1, and possibly other OpenStack components, fail to ...
CVE-2013-0186MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web scri...
CVE-2013-0180MEDIUM5.5Insecure temporary file vulnerability in Redis 2.6 related to /tmp/redis.ds.
CVE-2013-0178MEDIUM5.5Insecure temporary file vulnerability in Redis before 2.6 related to /tmp/redis-%p.vm.
CVE-2013-3718MEDIUM5.5evince is missing a check on number of pages which can lead to a segmentation fault
CVE-2013-1951MEDIUM6.1A cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.5 and 1.20.x before 1.20.4 and allows remote attacke...
CVE-2013-1934MEDIUM5.4A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.0rc1...
CVE-2013-1932MEDIUM5.4A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 a...
CVE-2013-1931MEDIUM6.1A cross-site scripting (XSS) vulnerability in MantisBT 1.2.14 allows remote attackers to inject arbitrary web script or ...
CVE-2013-1930MEDIUM4.3MantisBT 1.2.12 before 1.2.15 allows authenticated users to by the workflow restriction and close issues.
CVE-2013-4856MEDIUM6.5D-Link DIR-865L has Information Disclosure.
CVE-2013-6662MEDIUM6.5Google Chrome caches TLS sessions before certificate validation occurs.
CVE-2013-3993MEDIUM6.5IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restri...
CVE-2013-7354MEDIUM6.5Multiple integer overflows in libpng before 1.5.14rc03 allow remote attackers to cause a denial of service (crash) via a...
CVE-2013-7353MEDIUM6.5Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng before 1.5.14beta08 allows context-...
CVE-2013-7331MEDIUM6.5The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the exist...
CVE-2013-6954MEDIUM6.5The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL poi...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now