2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-0847 | — | — | 1.9% | Dec 7, 2013 | The ff_id3v2_parse function in libavformat/id3v2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified i... |
| CVE-2013-0846 | — | — | 3.1% | Dec 7, 2013 | Array index error in the qdm2_decode_super_block function in libavcodec/qdm2.c in FFmpeg before 1.1 allows remote attack... |
| CVE-2013-0845 | — | — | 3.6% | Dec 7, 2013 | libavcodec/alsdec.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via a crafted block len... |
| CVE-2013-0844 | — | — | 2.4% | Dec 7, 2013 | Off-by-one error in the adpcm_decode_frame function in libavcodec/adpcm.c in FFmpeg before 1.0.4 allows remote attackers... |
| CVE-2013-6410 | — | — | 2.5% | Dec 7, 2013 | nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which might allow remote attac... |
| CVE-2013-6409 | — | — | 0.3% | Dec 7, 2013 | Debian adequate before 0.8.1, when run by root with the --user option, allows local users to hijack the tty and possibly... |
| CVE-2013-6408 | — | — | 11.4% | Dec 7, 2013 | The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allo... |
| CVE-2013-6407 | — | — | 11.4% | Dec 7, 2013 | The UpdateRequestHandler for XML in Apache Solr before 4.1 allows remote attackers to have an unspecified impact via XML... |
| CVE-2013-6397 | — | — | 56.3% | Dec 7, 2013 | Directory traversal vulnerability in SolrResourceLoader in Apache Solr before 4.6 allows remote attackers to read arbitr... |
| CVE-2013-6050 | — | — | 1.2% | Dec 7, 2013 | Integer overflow in Links before 2.8 allows remote attackers to cause a denial of service (crash) via crafted HTML table... |
| CVE-2013-4558 | — | — | 5.9% | Dec 7, 2013 | The get_parent_resource function in repos.c in mod_dav_svn Apache HTTPD server module in Subversion 1.7.11 through 1.7.1... |
| CVE-2013-4505 | — | — | 7.9% | Dec 7, 2013 | The is_this_legal function in mod_dontdothat for Apache Subversion 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4 allows r... |
| CVE-2013-4479 | — | — | 3.2% | Dec 7, 2013 | lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary... |
| CVE-2013-4478 | — | — | 2.1% | Dec 7, 2013 | Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metachara... |
| CVE-2013-4446 | — | — | 1.5% | Dec 7, 2013 | The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x... |
| CVE-2013-4445 | — | — | 1.6% | Dec 7, 2013 | The json rendering functionality in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal uses... |
| CVE-2013-4212 | — | — | 81.1% | Dec 7, 2013 | Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute ... |
| CVE-2013-4171 | — | — | 3.0% | Dec 7, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Roller before 5.0.2 allow remote attackers to inject arbit... |
| CVE-2013-6707 | — | — | 2.5% | Dec 7, 2013 | Memory leak in the connection-manager implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and ear... |
| CVE-2013-5455 | — | — | 0.9% | Dec 7, 2013 | IBM SmartCloud Provisioning 2.1 before FP3 IF0001 allows remote authenticated users to modify virtual-system deployment ... |
| CVE-2013-6999 | — | — | 2.0% | Dec 7, 2013 | The IsHandleEntrySecure function in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 SP2 does not ... |
| CVE-2013-6920 | — | — | 3.2% | Dec 7, 2013 | Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, ... |
| CVE-2013-6640 | — | — | 1.8% | Dec 7, 2013 | The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google... |
| CVE-2013-6639 | — | — | 1.8% | Dec 7, 2013 | The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google... |
| CVE-2013-6638 | — | — | 1.9% | Dec 7, 2013 | Multiple buffer overflows in runtime.cc in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, all... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now