2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5385 | — | — | 3.5% | Jan 2, 2014 | The OSPF implementation in IBM i 6.1 and 7.1, in z/OS on zSeries servers, and in Networking Operating System (aka NOS, f... |
| CVE-2013-5211 | — | — | 97.5% | Jan 2, 2014 | The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service... |
| CVE-2013-3289 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3284 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3283 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-3282 | — | — | — | Jan 2, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2013-6450 | — | — | 14.5% | Jan 1, 2014 | The DTLS retransmission implementation in OpenSSL 1.0.0 before 1.0.0l and 1.0.1 before 1.0.1f does not properly maintain... |
| CVE-2013-3667 | — | — | 1.8% | Dec 31, 2013 | The software update mechanism as used in Bare Bones Software Yojimbo before 4.0, TextWrangler before 4.5.3, and BBEdit b... |
| CVE-2013-3572 | MEDIUM | 6.1 | 1.6% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the administer interface in the UniFi Controller in Ubiquiti Networks UniFi ... |
| CVE-2013-6987 | — | — | 14.9% | Dec 31, 2013 | Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation Manager (DSM) before ... |
| CVE-2013-6459 | — | — | 2.2% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to injec... |
| CVE-2013-5573 | — | — | 5.4% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the default markup formatter in Jenkins 1.523 allows remote attackers to inj... |
| CVE-2013-7242 | — | — | 1.8% | Dec 31, 2013 | SQL injection vulnerability in zp-core/zp-extensions/wordpress_import.php in Zenphoto before 1.4.5.4 allows remote authe... |
| CVE-2013-7241 | — | — | 2.0% | Dec 31, 2013 | Cross-site scripting (XSS) vulnerability in the export function in zp-core/zp-extensions/mergedRSS.php in Zenphoto befor... |
| CVE-2013-6983 | — | — | 2.1% | Dec 31, 2013 | SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to e... |
| CVE-2013-7209 | — | — | 2.8% | Dec 30, 2013 | Cross-site request forgery (CSRF) vulnerability in admBase/login.page in the Admin module in JForum allows remote attack... |
| CVE-2013-7233 | — | — | 3.8% | Dec 30, 2013 | Cross-site request forgery (CSRF) vulnerability in the retrospam component in wp-admin/options-discussion.php in WordPre... |
| CVE-2013-7232 | — | — | 2.0% | Dec 30, 2013 | SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2013-7231 | — | — | 1.1% | Dec 30, 2013 | Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows rem... |
| CVE-2013-5222 | — | — | 1.1% | Dec 30, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Server 10.1 allow remote authenticated users to i... |
| CVE-2013-5220 | — | — | 4.7% | Dec 30, 2013 | goform/login on the HOT HOTBOX router with software 2.1.11 allows remote attackers to cause a denial of service (device ... |
| CVE-2013-5219 | — | — | 4.1% | Dec 30, 2013 | Directory traversal vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to read arbitrar... |
| CVE-2013-5218 | — | — | 3.8% | Dec 30, 2013 | Cross-site scripting (XSS) vulnerability on the HOT HOTBOX router with software 2.1.11 allows remote attackers to inject... |
| CVE-2013-5210 | — | — | 1.4% | Dec 30, 2013 | Cross-site scripting (XSS) vulnerability in the GUI login page in ADTRAN AOS before R10.8.1 on the NetVanta 7100 allows ... |
| CVE-2013-5039 | — | — | 2.1% | Dec 30, 2013 | Cross-site request forgery (CSRF) vulnerability in goform/wlanBasicSecurity on the HOT HOTBOX router with software 2.1.1... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now