2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-2512CRITICAL9.8The ftpd gem 0.2.1 for Ruby allows remote attackers to execute arbitrary OS commands via shell metacharacters in a LIST ...
CVE-2013-1053MEDIUM5.5In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An at...
CVE-2013-6506——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2013-6505——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2013-6504——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2013-6503——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2013-6502——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2013-7491MEDIUM5.3An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function re...
CVE-2013-7490MEDIUM5.3An issue was discovered in the DBI module before 1.632 for Perl. Using many arguments to methods for Callbacks may lead ...
CVE-2013-1703——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2013-0802——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2013-7489MEDIUM6.8The Beaker library through 1.11.0 for Python is affected by deserialization of untrusted data, which could lead to arbit...
CVE-2013-7488HIGH7.5perl-Convert-ASN1 (aka the Convert::ASN1 module for Perl) through 0.27 allows remote attackers to cause an infinite loop...
CVE-2013-7487CRITICAL9.8On Swann DVR04B, DVR08B, DVR-16CIF, and DVR16B devices, raysharpdvr application has a vulnerable call to “system”, which...
CVE-2013-1753HIGH7.5The gzip_decode function in the xmlrpc client library in Python 3.4 and earlier allows remote attackers to cause a denia...
CVE-2013-3587MEDIUM5.9The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating th...
CVE-2013-4088MEDIUM6.5Kernel/Modules/AgentTicketWatcher.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.21, 3.1.x before 3.1.17, and ...
CVE-2013-3551MEDIUM6.5Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3....
CVE-2013-7109——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2013-2018CRITICAL9.8Multiple SQL injection vulnerabilities in BOINC allow remote attackers to execute arbitrary SQL commands via unspecified...
CVE-2013-5581——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2013-4228MEDIUM4.3The OG access fields (visibility fields) implementation in Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal ...
CVE-2013-4226MEDIUM6.5The Authenticated User Page Caching (Authcache) module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict acce...
CVE-2013-6295CRITICAL9.8PrestaShop 1.5.5 vulnerable to privilege escalation via a Salesman account via upload module
CVE-2013-3323CRITICAL9.8A Privilege Escalation Vulnerability exists in IBM Maximo Asset Management 7.5, 7.1, and 6.2, when WebSeal with Basic Au...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now