2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-5607 | — | — | 3.0% | Nov 20, 2013 | Integer overflow in the PL_ArenaAllocate function in Mozilla Netscape Portable Runtime (NSPR) before 4.10.2, as used in ... |
| CVE-2013-1417 | — | — | 1.9% | Nov 20, 2013 | do_tgs_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.11 before 1.11.4, when a single-compone... |
| CVE-2013-6826 | — | — | 1.9% | Nov 20, 2013 | cgi-bin/module//sysmanager/admin/SYSAdminUserDialog in Fortinet FortiAnalyzer before 5.0.5 does not properly validate th... |
| CVE-2013-6823 | — | — | 1.2% | Nov 20, 2013 | GRMGApp in SAP NetWeaver allows remote attackers to bypass intended access restrictions via unspecified vectors. |
| CVE-2013-6822 | — | — | 2.2% | Nov 20, 2013 | GRMGApp in SAP NetWeaver allows remote attackers to have unspecified impact and attack vectors, related to an XML Extern... |
| CVE-2013-6821 | — | — | 1.9% | Nov 20, 2013 | Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read ar... |
| CVE-2013-6819 | — | — | 1.1% | Nov 20, 2013 | Cross-site scripting (XSS) vulnerability in Performance Provider in SAP NetWeaver allows remote attackers to inject arbi... |
| CVE-2013-6820 | — | — | 3.6% | Nov 20, 2013 | Unrestricted file upload vulnerability in the SAP NetWeaver Development Infrastructure (NWDI) allows remote attackers to... |
| CVE-2013-6818 | — | — | 1.4% | Nov 20, 2013 | SAP NetWeaver Logviewer 6.30, when running on Windows, allows remote attackers to bypass intended access restrictions vi... |
| CVE-2013-6817 | — | — | 2.7% | Nov 20, 2013 | Heap-based buffer overflow in SAP Network Interface Router (SAProuter) 7.30 allows remote attackers to cause a denial of... |
| CVE-2013-6816 | — | — | 1.2% | Nov 20, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the (1) JavaDumpService and (2) DataCollector servlets in SAP Net... |
| CVE-2013-6815 | — | — | 1.7% | Nov 20, 2013 | The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and earlier allows remo... |
| CVE-2013-6814 | — | — | 1.8% | Nov 20, 2013 | The J2EE Engine in SAP NetWeaver 6.40, 7.02, and earlier allows remote attackers to redirect users to arbitrary web site... |
| CVE-2013-4560 | — | — | 5.4% | Nov 20, 2013 | Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentatio... |
| CVE-2013-4559 | — | — | 10.7% | Nov 20, 2013 | lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which ... |
| CVE-2013-4495 | — | — | 3.3% | Nov 20, 2013 | The send_the_mail function in server/svr_mail.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource... |
| CVE-2013-4487 | — | — | 1.9% | Nov 20, 2013 | Off-by-one error in the dane_raw_tlsa in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.16 and 3.2.x before 3.2.6... |
| CVE-2013-4466 | — | — | 2.0% | Nov 20, 2013 | Buffer overflow in the dane_query_tlsa function in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.15 and 3.2.x be... |
| CVE-2013-4386 | — | — | 1.2% | Nov 20, 2013 | Multiple SQL injection vulnerabilities in app/models/concerns/host_common.rb in Foreman before 1.2.3 allow remote attack... |
| CVE-2013-6074 | — | — | 1.4% | Nov 20, 2013 | Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 7.2.x before 7.2.2-rev25 and 7.4.x before 7.4.0-r... |
| CVE-2013-5966 | — | — | 1.2% | Nov 20, 2013 | Cross-site scripting (XSS) vulnerability in ZK Framework before 5.0.13 allows remote attackers to inject arbitrary web s... |
| CVE-2013-5730 | — | — | 1.2% | Nov 20, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DSL-2740B Gateway with firmware EU_1.00 allow remot... |
| CVE-2013-5215 | — | — | 1.9% | Nov 20, 2013 | Cross-site scripting (XSS) vulnerability in the web interface "WiFi scan" option in FOSCAM Wireless IP Cameras allows re... |
| CVE-2013-4592 | — | — | 0.5% | Nov 20, 2013 | Memory leak in the __kvm_set_memory_region function in virt/kvm/kvm_main.c in the Linux kernel before 3.9 allows local u... |
| CVE-2013-4591 | — | — | 0.6% | Nov 20, 2013 | Buffer overflow in the __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the Linux kernel before 3.7.2 allows loc... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now