2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-7008 | — | — | 1.6% | Dec 9, 2013 | The decode_slice_header function in libavcodec/h264.c in FFmpeg before 2.1 incorrectly relies on a certain droppable fie... |
| CVE-2013-6404 | — | — | 2.1% | Dec 9, 2013 | Quassel core (server daemon) in Quassel IRC before 0.9.2 does not properly verify the user ID when accessing user backlo... |
| CVE-2013-6171 | — | — | 1.5% | Dec 9, 2013 | checkpassword-reply in Dovecot before 2.2.7 performs setuid operations to a user who is authenticating, which allows loc... |
| CVE-2013-4400 | — | — | 0.4% | Dec 9, 2013 | virt-login-shell in libvirt 1.1.2 through 1.1.3 allows local users to overwrite arbitrary files and possibly gain privil... |
| CVE-2013-4376 | — | — | 2.7% | Dec 9, 2013 | The setgid wrapper libx2go-server-db-sqlite3-wrapper.c in X2Go Server before 4.0.0.2 allows remote attackers to execute ... |
| CVE-2013-1953 | — | — | 1.7% | Dec 9, 2013 | Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers... |
| CVE-2013-1349 | — | — | 23.3% | Dec 9, 2013 | Eval injection vulnerability in ajax.php in openSIS 4.5 through 5.2 allows remote attackers to execute arbitrary PHP cod... |
| CVE-2013-6406 | — | — | — | Dec 8, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6858. Reason: This candidate is a reservation du... |
| CVE-2013-7001 | — | — | 1.3% | Dec 7, 2013 | The Multimedia Messaging Centre (MMSC) in NowSMS Now SMS & MMS Gateway before 2013.11.15 allows remote attackers to caus... |
| CVE-2013-7000 | — | — | 1.3% | Dec 7, 2013 | The Multimedia Messaging Centre (MMSC) in NowSMS Now SMS & MMS Gateway 2013.09.26 allows remote attackers to cause a den... |
| CVE-2013-6389 | — | — | 1.2% | Dec 7, 2013 | Open redirect vulnerability in the Overlay module in Drupal 7.x before 7.24 allows remote attackers to redirect users to... |
| CVE-2013-6386 | — | — | 2.1% | Dec 7, 2013 | Drupal 6.x before 6.29 and 7.x before 7.24 uses the PHP mt_rand function to generate random numbers, which uses predicta... |
| CVE-2013-6385 | — | — | 3.1% | Dec 7, 2013 | The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs for... |
| CVE-2013-0859 | — | — | 2.1% | Dec 7, 2013 | The add_doubles_metadata function in libavcodec/tiff.c in FFmpeg before 1.1 allows remote attackers to have an unspecifi... |
| CVE-2013-0858 | — | — | 3.1% | Dec 7, 2013 | The atrac3_decode_init function in libavcodec/atrac3.c in FFmpeg before 1.0.4 allows remote attackers to have an unspeci... |
| CVE-2013-0857 | — | — | 3.6% | Dec 7, 2013 | The decode_frame_ilbm function in libavcodec/iff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified i... |
| CVE-2013-0856 | — | — | 2.1% | Dec 7, 2013 | The lpc_prediction function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified imp... |
| CVE-2013-0855 | — | — | 3.0% | Dec 7, 2013 | Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to ... |
| CVE-2013-0854 | — | — | 3.1% | Dec 7, 2013 | The mjpeg_decode_scan_progressive_ac function in libavcodec/mjpegdec.c in FFmpeg before 1.1 allows remote attackers to h... |
| CVE-2013-0853 | — | — | 2.4% | Dec 7, 2013 | The wavpack_decode_frame function in libavcodec/wavpack.c in FFmpeg before 1.1 allows remote attackers to have an unspec... |
| CVE-2013-0852 | — | — | 2.1% | Dec 7, 2013 | The parse_picture_segment function in libavcodec/pgssubdec.c in FFmpeg before 1.1 allows remote attackers to have an uns... |
| CVE-2013-0851 | — | — | 2.1% | Dec 7, 2013 | The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impa... |
| CVE-2013-0850 | — | — | 2.1% | Dec 7, 2013 | The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1 allows remote attackers to have an unspecifie... |
| CVE-2013-0849 | — | — | 3.1% | Dec 7, 2013 | The roq_decode_init function in libavcodec/roqvideodec.c in FFmpeg before 1.1 allows remote attackers to have an unspeci... |
| CVE-2013-0848 | — | — | 2.4% | Dec 7, 2013 | The decode_init function in libavcodec/huffyuv.c in FFmpeg before 1.1 allows remote attackers to have an unspecified imp... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now