2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-0877 | — | — | 2.4% | Nov 23, 2013 | The old_codec37 function in libavcodec/sanm.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impa... |
| CVE-2013-0876 | — | — | 2.4% | Nov 23, 2013 | Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1.... |
| CVE-2013-0875 | — | — | 3.7% | Nov 23, 2013 | The ff_add_png_paeth_prediction function in libavcodec/pngdec.c in FFmpeg before 1.1.3 allows remote attackers to have a... |
| CVE-2013-0874 | — | — | 2.4% | Nov 23, 2013 | The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to h... |
| CVE-2013-0873 | — | — | 2.9% | Nov 23, 2013 | The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified i... |
| CVE-2013-0872 | — | — | 2.8% | Nov 23, 2013 | The swr_init function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecifie... |
| CVE-2013-6375 | — | — | 1.4% | Nov 23, 2013 | Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present... |
| CVE-2013-4589 | — | — | 2.3% | Nov 23, 2013 | The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a ... |
| CVE-2013-4545 | — | — | 3.1% | Nov 23, 2013 | cURL and libcurl 7.18.0 through 7.32.0, when built with OpenSSL, disables the certificate CN and SAN name field verifica... |
| CVE-2013-4485 | — | — | 2.0% | Nov 23, 2013 | 389 Directory Server 1.2.11.15 (aka Red Hat Directory Server before 8.2.11-14) allows remote authenticated users to caus... |
| CVE-2013-4482 | — | — | 0.4% | Nov 23, 2013 | Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscrip... |
| CVE-2013-4481 | — | — | 0.2% | Nov 23, 2013 | Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the ... |
| CVE-2013-4474 | — | — | 10.5% | Nov 23, 2013 | Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote ... |
| CVE-2013-4473 | — | — | 7.1% | Nov 23, 2013 | Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote ... |
| CVE-2013-1813 | — | — | 0.6% | Nov 23, 2013 | util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories... |
| CVE-2013-0281 | — | — | 3.0% | Nov 23, 2013 | Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not l... |
| CVE-2013-6342 | — | — | 2.1% | Nov 22, 2013 | Cross-site scripting (XSS) vulnerability in the Tweet Blender plugin before 4.0.2 for WordPress allows remote attackers ... |
| CVE-2013-6377 | — | — | — | Nov 22, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-6699 | — | — | 1.2% | Nov 22, 2013 | The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller... |
| CVE-2013-6698 | — | — | 0.8% | Nov 22, 2013 | The web interface on Cisco Wireless LAN Controller (WLC) devices does not properly restrict use of IFRAME elements, whic... |
| CVE-2013-6694 | — | — | 1.1% | Nov 22, 2013 | The IPSec implementation in Cisco IOS allows remote attackers to cause a denial of service (MTU change and tunnel-sessio... |
| CVE-2013-6312 | — | — | 1.4% | Nov 22, 2013 | Unspecified vulnerability in IBM Rational Service Tester 8.3.x and 8.5.x before 8.5.1 and Rational Performance Tester 8.... |
| CVE-2013-5999 | — | — | 0.6% | Nov 22, 2013 | Kingsoft KDrive Personal before 1.21.0.1880 on Windows does not verify X.509 certificates from SSL servers, which allows... |
| CVE-2013-5998 | — | — | 1.8% | Nov 22, 2013 | Unspecified vulnerability in the Web manager implementation on D-Link Japan DES-3800 devices with firmware before R4.50B... |
| CVE-2013-5997 | — | — | 1.2% | Nov 22, 2013 | Unspecified vulnerability in the SSH implementation on D-Link Japan DES-3800 devices with firmware before R4.50B58 allow... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now