2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4375 | — | — | 0.6% | Jan 19, 2014 | The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local... |
| CVE-2013-2185 | — | — | 7.2% | Jan 19, 2014 | The readObject method in the DiskFileItem class in Apache Tomcat and JBoss Web, as used in Red Hat JBoss Enterprise Appl... |
| CVE-2013-2142 | — | — | 0.3% | Jan 19, 2014 | userpref.c in libimobiledevice 1.1.4, when $HOME and $XDG_CONFIG_HOME are not set, allows local users to overwrite arbit... |
| CVE-2013-1438 | — | — | 2.1% | Jan 19, 2014 | Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows c... |
| CVE-2013-0244 | — | — | 2.1% | Jan 19, 2014 | Cross-site scripting (XSS) vulnerability in Drupal 6.x before 6.28 and 7.x before 7.19, when running with older versions... |
| CVE-2013-4231 | — | — | 7.5% | Jan 19, 2014 | Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds wri... |
| CVE-2013-3483 | — | — | 3.5% | Jan 19, 2014 | Stack-based buffer overflow in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.1.1301 allows remote attackers t... |
| CVE-2013-3482 | — | — | 31.5% | Jan 19, 2014 | Stack-based buffer overflow in the rf_report_error function in ermapper_u.dll in Intergraph ERDAS ER Viewer before 13.0.... |
| CVE-2013-1740 | — | — | 1.9% | Jan 18, 2014 | The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when t... |
| CVE-2013-2037 | — | — | 1.3% | Jan 18, 2014 | httplib2 0.7.2, 0.8, and earlier, after an initial connection is made, does not verify that the server hostname matches ... |
| CVE-2013-6425 | — | — | 2.9% | Jan 18, 2014 | Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and c... |
| CVE-2013-6424 | — | — | 2.9% | Jan 18, 2014 | Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause ... |
| CVE-2013-7295 | — | — | 1.8% | Jan 17, 2014 | Tor before 0.2.4.20, when OpenSSL 1.x is used in conjunction with a certain HardwareAccel setting on Intel Sandy Bridge ... |
| CVE-2013-7243 | — | — | 1.9% | Jan 17, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS 3.1.2 and 3.2.3 allow remote attackers to inject ar... |
| CVE-2013-7204 | — | — | 10.6% | Jan 17, 2014 | Cross-site request forgery (CSRF) vulnerability in set_users.cgi in Conceptronic CIPCAMPTIWL Camera 1.0 with firmware 21... |
| CVE-2013-6725 | — | — | 1.6% | Jan 16, 2014 | Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application Server 7.x before 7.... |
| CVE-2013-6330 | — | — | 1.5% | Jan 16, 2014 | IBM WebSphere Application Server 7.x before 7.0.0.31, when simpleFileServlet static file caching is enabled, allows remo... |
| CVE-2013-6325 | — | — | 2.1% | Jan 16, 2014 | IBM WebSphere Application Server 7.x before 7.0.0.31, 8.0.x before 8.0.0.8, and 8.5.x before 8.5.5.2 allows remote attac... |
| CVE-2013-3702 | — | — | — | Jan 16, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6344. Reason: This candidate is a duplicate of... |
| CVE-2013-3701 | — | — | — | Jan 16, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6345. Reason: This candidate is a duplicate of... |
| CVE-2013-3699 | — | — | — | Jan 16, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-3698 | — | — | — | Jan 16, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6346. Reason: This candidate is a duplicate of... |
| CVE-2013-6786 | — | — | 2.2% | Jan 16, 2014 | Cross-site scripting (XSS) vulnerability in Allegro RomPager before 4.51, as used on the ZyXEL P660HW-D1, Huawei MT882, ... |
| CVE-2013-6687 | — | — | 0.9% | Jan 16, 2014 | The web portal in the Enterprise License Manager component in Cisco WebEx Meetings Server allows remote authenticated us... |
| CVE-2013-6646 | — | — | 1.6% | Jan 16, 2014 | Use-after-free vulnerability in the Web Workers implementation in Google Chrome before 32.0.1700.76 on Windows and befor... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now