2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4209 | — | — | 0.3% | May 1, 2018 | Automatic Bug Reporting Tool (ABRT) before 2.1.6 allows local users to obtain sensitive information about arbitrary file... |
| CVE-2013-4201 | — | — | 0.8% | May 1, 2018 | Katello allows remote authenticated users to call the "system remove_deletion" CLI command via vectors related to "remov... |
| CVE-2013-2049 | — | — | 1.2% | May 1, 2018 | Red Hat CloudForms 2 Management Engine (CFME) allows remote attackers to conduct session tampering attacks by leveraging... |
| CVE-2013-0185 | — | — | 0.7% | May 1, 2018 | Cross-site request forgery (CSRF) vulnerability in ManageIQ Enterprise Virtualization Manager (EVM) allows remote attack... |
| CVE-2013-0159 | — | — | 0.3% | May 1, 2018 | The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows l... |
| CVE-2013-4040 | — | — | 0.3% | May 1, 2018 | IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2.x before 7.2.1.5 and 7.2.x before 7.2.2.0 on Unix use ... |
| CVE-2013-4035 | — | — | 0.5% | May 1, 2018 | IBM Sterling Connect:Direct for OpenVMS 3.4.00, 3.4.01, 3.5.00, 3.6.0, and 3.6.0.1 allow remote attackers to have unspec... |
| CVE-2013-7202 | — | — | 2.2% | Apr 27, 2018 | The WebHybridClient class in PayPal 5.3 and earlier for Android allows remote attackers to execute arbitrary JavaScript ... |
| CVE-2013-7201 | — | — | 1.9% | Apr 27, 2018 | WebHybridClient.java in PayPal 5.3 and earlier for Android ignores SSL errors, which allows man-in-the-middle attackers ... |
| CVE-2013-6739 | — | — | 0.9% | Apr 27, 2018 | IBM SPSS Modeler before 16 on UNIX allows remote authenticated users to bypass intended access restrictions via an SSO t... |
| CVE-2013-5461 | — | — | 2.4% | Apr 27, 2018 | IBM Endpoint Manager for Remote Control 9.0.0 and 9.0.1 and Tivoli Remote Control 5.1.2 store multiple hashes of partial... |
| CVE-2013-5391 | — | — | 1.0% | Apr 27, 2018 | IBM Worklight Consumer and Enterprise Editions 5.0.x before 5.0.6 Fix Pack 2 and 6.0.x before 6.0.0 Fix Pack 2, and Mobi... |
| CVE-2013-7245 | — | — | 1.5% | Apr 24, 2018 | The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and... |
| CVE-2013-3947 | — | — | 0.5% | Apr 24, 2018 | Buffer overflow in MedCoreD.sys in AhnLab V3 Internet Security 8.0.7.5 (Build 1373) allows local users to gain privilege... |
| CVE-2013-6876 | — | — | 0.6% | Apr 6, 2018 | The (1) pty_init_terminal and (2) pipe_init_terminal functions in main.c in s3dvt 0.2.2 and earlier allows local users t... |
| CVE-2013-1936 | — | — | — | Feb 23, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-4891 | — | — | 1.5% | Feb 21, 2018 | The xss_clean function in CodeIgniter before 2.1.4 might allow remote attackers to bypass an intended protection mechani... |
| CVE-2013-0267 | — | — | 3.8% | Feb 21, 2018 | The Privileges portion of the web GUI and the XMLRPC API in Apache VCL 2.3.x before 2.3.2, 2.2.x before 2.2.2 and 2.1 al... |
| CVE-2013-3553 | — | — | 2.4% | Feb 8, 2018 | Nitro Pro 7.5.0.22 and earlier and Nitro Reader 2.5.0.36 and earlier allow remote attackers to execute arbitrary code vi... |
| CVE-2013-3552 | — | — | 2.8% | Feb 8, 2018 | Nitro Pro 7.5.0.29 and earlier and Nitro Reader 2.5.0.45 and earlier allow remote attackers to execute arbitrary code vi... |
| CVE-2013-4317 | — | — | 1.2% | Feb 6, 2018 | In Apache CloudStack 4.1.0 and 4.1.1, when calling the CloudStack API call listProjectAccounts as a regular, non-adminis... |
| CVE-2013-7435 | — | — | 2.2% | Feb 1, 2018 | The open-ils.pcrud endpoint in Evergreen before 2.5.9, 2.6.x before 2.6.7, and 2.7.x before 2.7.4 allows remote attacker... |
| CVE-2013-4364 | — | — | 0.4% | Jan 8, 2018 | (1) oo-analytics-export and (2) oo-analytics-import in the openshift-origin-broker-util package in Red Hat OpenShift Ent... |
| CVE-2013-4578 | — | — | 2.4% | Dec 29, 2017 | jarsigner in OpenJDK and Oracle Java SE before 7u51 allows remote attackers to bypass a code-signing protection mechanis... |
| CVE-2013-7400 | — | — | 1.6% | Dec 29, 2017 | The Direct Mail (direct_mail) extension before 3.1.2 for TYPO3 allows remote attackers to obtain sensitive information b... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now