2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-6933——The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2011.08.13 through 2013.11.25, as used in V...
CVE-2013-4152——The Spring OXM wrapper in Spring Framework before 3.2.4 and 4.0.0.M1, when using the JAXB marshaller, does not disable e...
CVE-2013-5371——The client in IBM Tivoli Storage Manager (TSM) 6.3.1 and 6.4.0 on Windows does not preserve permissions of Resilient Fil...
CVE-2013-7314——The OSPF implementation on NEC IP38X, IX1000, IX2000, and IX3000 routers does not consider the possibility of duplicate ...
CVE-2013-7313——The OSPF implementation in Juniper Junos through 13.x, JunosE, and ScreenOS through 6.3.x does not consider the possibil...
CVE-2013-7312——The OSPF implementation on Enterasys switches and routers does not consider the possibility of duplicate Link State ID v...
CVE-2013-7311——The OSPF implementation in Check Point Gaia OS R75.X and R76 and IPSO OS 6.2 R75.X and R76 does not consider the possibi...
CVE-2013-7310——The OSPF implementation on Yamaha routers does not consider the possibility of duplicate Link State ID values in Link St...
CVE-2013-7309——The OSPF implementation in Extreme Networks EXOS does not consider the possibility of duplicate Link State ID values in ...
CVE-2013-7308——The OSPF implementation on the D-Link DES-3810-28 switch with firmware R2.20.B017 does not consider the possibility of d...
CVE-2013-7307——The OSPF implementation on the Brocade Vyatta vRouter with software before 6.6R1 does not consider the possibility of du...
CVE-2013-7306——The OSPF implementation on Brocade routers does not consider the possibility of duplicate Link State ID values in Link S...
CVE-2013-6443——CloudForms 3.0 Management Engine before 5.2.1.6 allows remote attackers to bypass the Ruby on Rails protect_from_forgery...
CVE-2013-6448——The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier, as used in JBoss Web ...
CVE-2013-6447——Multiple XML External Entity (XXE) vulnerabilities in the (1) ExecutionHandler, (2) PollHandler, and (3) SubscriptionHan...
CVE-2013-6412——The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission valu...
CVE-2013-7305——fpw.php in e107 through 1.0.4 does not check the user_ban field, which makes it easier for remote attackers to reset pas...
CVE-2013-7304——Check Point Endpoint Security MI Server through R73 3.0.0 HFA2.5 does not configure X.509 certificate validation for cli...
CVE-2013-2750——Cross-site scripting (XSS) vulnerability in e107_plugins/content/handlers/content_preset.php in e107 before 1.0.3 allows...
CVE-2013-6746——Cross-site scripting (XSS) vulnerability in FileNet P8 Platform Documentation Installable Info Center 4.5.1 through 5.2....
CVE-2013-6343——Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow...
CVE-2013-5987——Unspecified vulnerability in NVIDIA graphics driver Release 331, 325, 319, 310, and 304 allows local users to bypass int...
CVE-2013-5986——Unspecified vulnerability in NVIDIA graphics driver Release 331, 325, 319, 310, and 304 has unknown impact and attack ve...
CVE-2013-4884——Cross-site scripting (XSS) vulnerability in McAfee SuperScan 4.0 allows remote attackers to inject arbitrary web script ...
CVE-2013-4160——Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a deni...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now