2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4152 | — | — | 26.3% | Jan 23, 2014 | The Spring OXM wrapper in Spring Framework before 3.2.4 and 4.0.0.M1, when using the JAXB marshaller, does not disable e... |
| CVE-2013-5371 | — | — | 0.4% | Jan 23, 2014 | The client in IBM Tivoli Storage Manager (TSM) 6.3.1 and 6.4.0 on Windows does not preserve permissions of Resilient Fil... |
| CVE-2013-7314 | — | — | 1.6% | Jan 23, 2014 | The OSPF implementation on NEC IP38X, IX1000, IX2000, and IX3000 routers does not consider the possibility of duplicate ... |
| CVE-2013-7313 | — | — | 1.1% | Jan 23, 2014 | The OSPF implementation in Juniper Junos through 13.x, JunosE, and ScreenOS through 6.3.x does not consider the possibil... |
| CVE-2013-7312 | — | — | 1.1% | Jan 23, 2014 | The OSPF implementation on Enterasys switches and routers does not consider the possibility of duplicate Link State ID v... |
| CVE-2013-7311 | — | — | 0.6% | Jan 23, 2014 | The OSPF implementation in Check Point Gaia OS R75.X and R76 and IPSO OS 6.2 R75.X and R76 does not consider the possibi... |
| CVE-2013-7310 | — | — | 0.8% | Jan 23, 2014 | The OSPF implementation on Yamaha routers does not consider the possibility of duplicate Link State ID values in Link St... |
| CVE-2013-7309 | — | — | 1.1% | Jan 23, 2014 | The OSPF implementation in Extreme Networks EXOS does not consider the possibility of duplicate Link State ID values in ... |
| CVE-2013-7308 | — | — | 0.6% | Jan 23, 2014 | The OSPF implementation on the D-Link DES-3810-28 switch with firmware R2.20.B017 does not consider the possibility of d... |
| CVE-2013-7307 | — | — | 0.9% | Jan 23, 2014 | The OSPF implementation on the Brocade Vyatta vRouter with software before 6.6R1 does not consider the possibility of du... |
| CVE-2013-7306 | — | — | 0.8% | Jan 23, 2014 | The OSPF implementation on Brocade routers does not consider the possibility of duplicate Link State ID values in Link S... |
| CVE-2013-6443 | — | — | 0.6% | Jan 23, 2014 | CloudForms 3.0 Management Engine before 5.2.1.6 allows remote attackers to bypass the Ruby on Rails protect_from_forgery... |
| CVE-2013-6448 | — | — | 1.4% | Jan 23, 2014 | The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier, as used in JBoss Web ... |
| CVE-2013-6447 | — | — | 2.7% | Jan 23, 2014 | Multiple XML External Entity (XXE) vulnerabilities in the (1) ExecutionHandler, (2) PollHandler, and (3) SubscriptionHan... |
| CVE-2013-6412 | — | — | 0.4% | Jan 23, 2014 | The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission valu... |
| CVE-2013-7305 | — | — | 1.0% | Jan 22, 2014 | fpw.php in e107 through 1.0.4 does not check the user_ban field, which makes it easier for remote attackers to reset pas... |
| CVE-2013-7304 | — | — | 0.6% | Jan 22, 2014 | Check Point Endpoint Security MI Server through R73 3.0.0 HFA2.5 does not configure X.509 certificate validation for cli... |
| CVE-2013-2750 | — | — | 3.2% | Jan 22, 2014 | Cross-site scripting (XSS) vulnerability in e107_plugins/content/handlers/content_preset.php in e107 before 1.0.3 allows... |
| CVE-2013-6746 | — | — | 1.2% | Jan 22, 2014 | Cross-site scripting (XSS) vulnerability in FileNet P8 Platform Documentation Installable Info Center 4.5.1 through 5.2.... |
| CVE-2013-6343 | — | — | 9.7% | Jan 22, 2014 | Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow... |
| CVE-2013-5987 | — | — | 0.4% | Jan 21, 2014 | Unspecified vulnerability in NVIDIA graphics driver Release 331, 325, 319, 310, and 304 allows local users to bypass int... |
| CVE-2013-5986 | — | — | 1.8% | Jan 21, 2014 | Unspecified vulnerability in NVIDIA graphics driver Release 331, 325, 319, 310, and 304 has unknown impact and attack ve... |
| CVE-2013-4884 | — | — | 4.3% | Jan 21, 2014 | Cross-site scripting (XSS) vulnerability in McAfee SuperScan 4.0 allows remote attackers to inject arbitrary web script ... |
| CVE-2013-4160 | — | — | 2.8% | Jan 21, 2014 | Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a deni... |
| CVE-2013-2152 | — | — | 0.4% | Jan 21, 2014 | Unquoted Windows search path vulnerability in the SPICE service, as used in Red Hat Enterprise Virtualization (RHEV) 3.2... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now