2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-1342 | HIGH | 7.8 | 1.2% | Sep 11, 2013 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2013-0810 | HIGH | 8.1 | 59.9% | Sep 11, 2013 | Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, and Windows Server 2008 SP2 allow remote a... |
| CVE-2013-1943 | HIGH | 7.8 | 0.4% | Jul 16, 2013 | The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation... |
| CVE-2013-2115 | HIGH | 8.1 | 72.8% | Jul 10, 2013 | Apache Struts 2 before 2.3.14.2 allows remote attackers to execute arbitrary OGNL code via a crafted request that is not... |
| CVE-2013-3163 | HIGH | 8.8 | 70.7% | Jul 10, 2013 | Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3129 | HIGH | 7.8 | 32.4% | Jul 10, 2013 | Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, and 4.5; Silverlight 5 before 5.1.20513.0; win32k.sys in the kernel-mod... |
| CVE-2013-1340 | HIGH | 8.4 | 1.5% | Jul 10, 2013 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2013-4734 | HIGH | 7.3 | 1.4% | Jun 30, 2013 | dasdec_mkuser on the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS de... |
| CVE-2013-4733 | HIGH | 7.5 | 2.2% | Jun 30, 2013 | The web server on the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS d... |
| CVE-2013-1690 | HIGH | 8.8 | 69.2% | Jun 26, 2013 | Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before ... |
| CVE-2013-1331 | HIGH | 7.8 | 81.9% | Jun 12, 2013 | Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code v... |
| CVE-2013-3735 | HIGH | 7.5 | 2.8% | May 31, 2013 | The Zend Engine in PHP before 5.4.16 RC1, and 5.5.0 before RC2, does not properly determine whether a parser error occur... |
| CVE-2013-3660 | HIGH | 7.8 | 39.6% | May 24, 2013 | The EPATHOBJ::pprFlattenRec function in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windo... |
| CVE-2013-2094 | HIGH | 8.4 | 47.7% | May 14, 2013 | The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data t... |
| CVE-2013-1347 | HIGH | 8.8 | 77.9% | May 5, 2013 | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2013-2596 | HIGH | 7.8 | 3.4% | Apr 13, 2013 | Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain... |
| CVE-2013-1294 | HIGH | 7 | 1.1% | Apr 9, 2013 | Race condition in the kernel in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Se... |
| CVE-2013-1292 | HIGH | 7.4 | 0.9% | Apr 9, 2013 | Race condition in win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and... |
| CVE-2013-1609 | HIGH | 7.8 | 0.4% | Mar 26, 2013 | Multiple unquoted Windows search path vulnerabilities in the (1) File Collector and (2) File PlaceHolder services in Sym... |
| CVE-2013-0335 | HIGH | 7.6 | 2.1% | Mar 22, 2013 | OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access t... |
| CVE-2013-0090 | HIGH | 8.8 | 38.2% | Mar 13, 2013 | Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary co... |
| CVE-2013-0074 | HIGH | 7.8 | 81.9% | Mar 13, 2013 | Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML obj... |
| CVE-2013-2551 | HIGH | 8.8 | 73.9% | Mar 11, 2013 | Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary co... |
| CVE-2013-0261 | HIGH | 8.8 | 0.3% | Mar 8, 2013 | A flaw was found in PackStack. A local user could exploit a symlink attack on a temporary file with a predictable name i... |
| CVE-2013-0648 | HIGH | 8.8 | 11.1% | Feb 27, 2013 | Unspecified vulnerability in the ExternalInterface ActionScript functionality in Adobe Flash Player before 10.3.183.67 a... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now