2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4270 | — | — | 0.5% | Dec 9, 2013 | The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid a... |
| CVE-2013-2930 | — | — | 0.7% | Dec 9, 2013 | The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properl... |
| CVE-2013-2929 | — | — | 0.7% | Dec 9, 2013 | The Linux kernel before 3.12.2 does not properly use the get_dumpable function, which allows local users to bypass inten... |
| CVE-2013-6985 | — | — | 1.1% | Dec 9, 2013 | SQL injection vulnerability in m_worklog/log_searchday.jsp in Enorth Webpublisher CMS, possibly 5.0 and earlier, allows ... |
| CVE-2013-6039 | — | — | 1.5% | Dec 9, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in NagiosQL 3.2 SP2 allow remote attackers to inject arbitrary web s... |
| CVE-2013-5355 | — | — | 0.6% | Dec 9, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in Sharetronix 3.1.1 allow remote attackers to hijack the aut... |
| CVE-2013-5354 | — | — | 1.2% | Dec 9, 2013 | Multiple SQL injection vulnerabilities in Sharetronix 3.1.1 allow remote attackers to execute arbitrary SQL commands via... |
| CVE-2013-3929 | — | — | 0.7% | Dec 9, 2013 | Cross-site scripting (XSS) vulnerability in admin/editevent.php in CMS Made Simple (CMSMS) 1.11.9 allows remote authenti... |
| CVE-2013-7025 | — | — | 4.3% | Dec 9, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in ematStaticAlertTypes.jsp in the Alert Settings section in Dell So... |
| CVE-2013-7024 | — | — | 2.5% | Dec 9, 2013 | The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not consider the component numbe... |
| CVE-2013-7023 | — | — | 1.6% | Dec 9, 2013 | The ff_combine_frame function in libavcodec/parser.c in FFmpeg before 2.1 does not properly handle certain memory-alloca... |
| CVE-2013-7022 | — | — | 1.6% | Dec 9, 2013 | The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 does not properly allocate memory for tiles, w... |
| CVE-2013-7021 | — | — | 1.6% | Dec 9, 2013 | The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO... |
| CVE-2013-7020 | — | — | 1.7% | Dec 9, 2013 | The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not properly enforce certain bit-count and co... |
| CVE-2013-7019 | — | — | 1.6% | Dec 9, 2013 | The get_cox function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not properly validate the reduction factor, w... |
| CVE-2013-7018 | — | — | 2.5% | Dec 9, 2013 | libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the use of valid code-block dimension values, which allows... |
| CVE-2013-7017 | — | — | 2.3% | Dec 9, 2013 | libavcodec/jpeg2000.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (invalid pointer derefer... |
| CVE-2013-7016 | — | — | 2.5% | Dec 9, 2013 | The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the expected sample separation, wh... |
| CVE-2013-7015 | — | — | 2.6% | Dec 9, 2013 | The flashsv_decode_frame function in libavcodec/flashsv.c in FFmpeg before 2.1 does not properly validate a certain heig... |
| CVE-2013-7014 | — | — | 1.7% | Dec 9, 2013 | Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attack... |
| CVE-2013-7013 | — | — | 1.6% | Dec 9, 2013 | The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 uses an incorrect ordering of arithmetic opera... |
| CVE-2013-7012 | — | — | 1.6% | Dec 9, 2013 | The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not prevent attempts to use non-zero image of... |
| CVE-2013-7011 | — | — | 1.6% | Dec 9, 2013 | The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not prevent changes to global parameters, whi... |
| CVE-2013-7010 | — | — | 2.7% | Dec 9, 2013 | Multiple integer signedness errors in libavcodec/dsputil.c in FFmpeg before 2.1 allow remote attackers to cause a denial... |
| CVE-2013-7009 | — | — | 1.6% | Dec 9, 2013 | The rpza_decode_stream function in libavcodec/rpza.c in FFmpeg before 2.1 does not properly maintain a pointer to pixel ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now