2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4110 | MEDIUM | 5.3 | 2.0% | Nov 5, 2019 | Cryptocat has an Unspecified Chat Participant User List Disclosure |
| CVE-2013-4107 | MEDIUM | 6.1 | 1.1% | Nov 5, 2019 | Cryptocat before 2.0.22: cryptocat.js handlePresence() has cross site scripting |
| CVE-2013-4280 | MEDIUM | 5.5 | 0.4% | Nov 4, 2019 | Insecure temporary file vulnerability in RedHat vsdm 4.9.6. |
| CVE-2013-2258 | MEDIUM | 5.3 | 1.4% | Nov 4, 2019 | Cryptocat before 2.0.22 has Nickname User Impersonation |
| CVE-2013-4101 | MEDIUM | 5.3 | 1.4% | Nov 4, 2019 | Cryptocat before 2.0.22 Link Markup Decorator HTML Handling Weakness |
| CVE-2013-4518 | MEDIUM | 5.5 | 0.3% | Nov 4, 2019 | RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates |
| CVE-2013-4423 | MEDIUM | 5.5 | 0.3% | Nov 4, 2019 | CloudForms stores user passwords in recoverable format |
| CVE-2013-4168 | MEDIUM | 6.1 | 1.1% | Nov 1, 2019 | Cross-site scripting (XSS) vulnerability in SmokePing 2.6.9 in the start and end time fields. |
| CVE-2013-2255 | MEDIUM | 5.9 | 1.0% | Nov 1, 2019 | HTTPSConnections in OpenStack Keystone 2013, OpenStack Compute 2013.1, and possibly other OpenStack components, fail to ... |
| CVE-2013-0186 | MEDIUM | 6.1 | 0.9% | Nov 1, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web scri... |
| CVE-2013-0180 | MEDIUM | 5.5 | 0.3% | Nov 1, 2019 | Insecure temporary file vulnerability in Redis 2.6 related to /tmp/redis.ds. |
| CVE-2013-0178 | MEDIUM | 5.5 | 0.4% | Nov 1, 2019 | Insecure temporary file vulnerability in Redis before 2.6 related to /tmp/redis-%p.vm. |
| CVE-2013-3718 | MEDIUM | 5.5 | 1.1% | Nov 1, 2019 | evince is missing a check on number of pages which can lead to a segmentation fault |
| CVE-2013-1951 | MEDIUM | 6.1 | 1.6% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.5 and 1.20.x before 1.20.4 and allows remote attacke... |
| CVE-2013-1934 | MEDIUM | 5.4 | 0.9% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.0rc1... |
| CVE-2013-1932 | MEDIUM | 5.4 | 1.0% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 a... |
| CVE-2013-1931 | MEDIUM | 6.1 | 2.3% | Oct 31, 2019 | A cross-site scripting (XSS) vulnerability in MantisBT 1.2.14 allows remote attackers to inject arbitrary web script or ... |
| CVE-2013-1930 | MEDIUM | 4.3 | 1.2% | Oct 31, 2019 | MantisBT 1.2.12 before 1.2.15 allows authenticated users to by the workflow restriction and close issues. |
| CVE-2013-4856 | MEDIUM | 6.5 | 0.8% | Oct 25, 2019 | D-Link DIR-865L has Information Disclosure. |
| CVE-2013-6662 | MEDIUM | 6.5 | 0.3% | Apr 13, 2017 | Google Chrome caches TLS sessions before certificate validation occurs. |
| CVE-2013-3993 | MEDIUM | 6.5 | 5.2% | Jul 7, 2014 | IBM InfoSphere BigInsights before 2.1.0.3 allows remote authenticated users to bypass intended file and directory restri... |
| CVE-2013-7354 | MEDIUM | 6.5 | 2.4% | May 6, 2014 | Multiple integer overflows in libpng before 1.5.14rc03 allow remote attackers to cause a denial of service (crash) via a... |
| CVE-2013-7353 | MEDIUM | 6.5 | 1.9% | May 6, 2014 | Integer overflow in the png_set_unknown_chunks function in libpng/pngset.c in libpng before 1.5.14beta08 allows context-... |
| CVE-2013-7331 | MEDIUM | 6.5 | 58.0% | Feb 26, 2014 | The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the exist... |
| CVE-2013-6954 | MEDIUM | 6.5 | 4.7% | Jan 12, 2014 | The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL poi... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now