2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-3907 | — | — | 1.8% | Dec 11, 2013 | portcls.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1... |
| CVE-2013-3903 | — | — | 2.0% | Dec 11, 2013 | Array index error in win32k.sys in the kernel-mode drivers in Microsoft Windows 8, Windows Server 2012 Gold and R2, and ... |
| CVE-2013-3902 | — | — | 2.0% | Dec 11, 2013 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1 and Window... |
| CVE-2013-3899 | — | — | 2.3% | Dec 11, 2013 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate... |
| CVE-2013-3878 | — | — | 1.7% | Dec 11, 2013 | Stack-based buffer overflow in the LRPC client in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local user... |
| CVE-2013-7043 | — | — | 2.1% | Dec 10, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Scientific Atlanta DPR2320R2 routers with software 2... |
| CVE-2013-5404 | — | — | 0.8% | Dec 10, 2013 | Cross-site scripting (XSS) vulnerability in the search implementation in IBM Rational Quality Manager (RQM) 2.0 through ... |
| CVE-2013-7042 | — | — | 0.3% | Dec 10, 2013 | SUSE Lifecycle Management Server (SLMS) before 1.3.7 uses world-readable permissions for the secret keys, which allows l... |
| CVE-2013-6840 | — | — | 0.3% | Dec 10, 2013 | Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local users to gain database ... |
| CVE-2013-6237 | — | — | 1.7% | Dec 10, 2013 | The ISL Desktop plugin for Windows before 1.4.7 for ISL Light 3.5.4 and earlier allows remote authenticated users to obt... |
| CVE-2013-3710 | — | — | 1.3% | Dec 10, 2013 | SUSE Lifecycle Management Server (SLMS) before 1.3.7 does not generate a new secret key when the service starts, which a... |
| CVE-2013-6224 | — | — | 2.2% | Dec 10, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in LiveZilla before 5.1.1.0 allow remote attackers to inject arbitra... |
| CVE-2013-3623 | — | — | 71.9% | Dec 10, 2013 | Multiple stack-based buffer overflows in cgi/close_window.cgi in the web interface in the Intelligent Platform Managemen... |
| CVE-2013-3622 | — | — | 5.4% | Dec 10, 2013 | Buffer overflow in logout.cgi in the Intelligent Platform Management Interface (IPMI) with firmware before 3.15 (SMT_X9_... |
| CVE-2013-2215 | — | — | — | Dec 10, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-6708 | — | — | 3.0% | Dec 10, 2013 | Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCu... |
| CVE-2013-5447 | — | — | 34.0% | Dec 10, 2013 | Stack-based buffer overflow in IBM Forms Viewer 4.x before 4.0.0.3 and 8.x before 8.0.1.1 allows remote attackers to exe... |
| CVE-2013-4408 | — | — | 2.7% | Dec 10, 2013 | Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samb... |
| CVE-2013-7027 | — | — | 1.5% | Dec 9, 2013 | The ieee80211_radiotap_iterator_init function in net/wireless/radiotap.c in the Linux kernel before 3.11.7 does not chec... |
| CVE-2013-7026 | — | — | 0.4% | Dec 9, 2013 | Multiple race conditions in ipc/shm.c in the Linux kernel before 3.12.2 allow local users to cause a denial of service (... |
| CVE-2013-6432 | — | — | 0.5% | Dec 9, 2013 | The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly interact with read syst... |
| CVE-2013-6431 | — | — | 0.4% | Dec 9, 2013 | The fib6_add function in net/ipv6/ip6_fib.c in the Linux kernel before 3.11.5 does not properly implement error-code enc... |
| CVE-2013-6427 | — | — | 3.9% | Dec 9, 2013 | upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program fro... |
| CVE-2013-6356 | — | — | — | Dec 9, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-6180 | — | — | 1.8% | Dec 9, 2013 | EMC RSA Security Analytics (SA) 10.x before 10.3, and RSA NetWitness NextGen 9.8, does not ensure that SA Core requests ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now