2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6686 | — | — | 1.5% | Nov 18, 2013 | The SSL VPN implementation in Cisco IOS 15.3(1)T2 and earlier allows remote authenticated users to cause a denial of ser... |
| CVE-2013-5556 | — | — | 0.3% | Nov 18, 2013 | The license-installation module on the Cisco Nexus 1000V switch 4.2(1)SV1(5.2b) and earlier for VMware vSphere, Cisco Ne... |
| CVE-2013-5454 | — | — | 1.8% | Nov 18, 2013 | IBM WebSphere Portal 6.0 through 6.0.1.7, 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF... |
| CVE-2013-5425 | — | — | 1.4% | Nov 18, 2013 | Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Virtual Enterprise 6.1 before 6.... |
| CVE-2013-4843 | — | — | 1.8% | Nov 18, 2013 | Unspecified vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote authenticated use... |
| CVE-2013-4842 | — | — | 2.3% | Nov 18, 2013 | Cross-site scripting (XSS) vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote at... |
| CVE-2013-4034 | — | — | 5.6% | Nov 18, 2013 | IBM Cognos Business Intelligence 8.4.1 before IF3, 10.1.0 before IF4, 10.1.1 before IF4, 10.2.0 before IF4, 10.2.1 befor... |
| CVE-2013-3876 | — | — | 5.2% | Nov 18, 2013 | DirectAccess in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 200... |
| CVE-2013-3694 | — | — | 0.9% | Nov 18, 2013 | BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not require authentication for rem... |
| CVE-2013-3407 | — | — | 1.8% | Nov 18, 2013 | The web interface in Cisco Server Provisioner 6.4.0 Patch 5-1301292331 and earlier does not require authentication for u... |
| CVE-2013-3406 | — | — | 1.1% | Nov 18, 2013 | The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Servi... |
| CVE-2013-3030 | — | — | 2.3% | Nov 18, 2013 | The servlet gateway in IBM Cognos Business Intelligence 8.4.1 before IF3, 10.1.0 before IF4, 10.1.1 before IF4, 10.2.0 b... |
| CVE-2013-1418 | — | — | 5.5% | Nov 18, 2013 | The setup_server_realm function in main.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.10.... |
| CVE-2013-6800 | — | — | 2.6% | Nov 18, 2013 | An unspecified third-party database module for the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.10.x all... |
| CVE-2013-6799 | — | — | 0.8% | Nov 18, 2013 | Apple Mac OS X 10.9 allows local users to cause a denial of service (memory corruption or panic) by creating a hard link... |
| CVE-2013-6798 | — | — | 1.9% | Nov 18, 2013 | BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly determine the user ac... |
| CVE-2013-5193 | — | — | 0.3% | Nov 18, 2013 | The App Store component in Apple iOS before 7.0.4 does not properly enforce an intended transaction-time password requir... |
| CVE-2013-4557 | — | — | 25.3% | Nov 18, 2013 | The Security Screen (_core_/securite/ecran_securite.php) before 1.1.8 for SPIP, as used in SPIP 3.0.x before 3.0.12, all... |
| CVE-2013-4556 | — | — | 2.1% | Nov 18, 2013 | Cross-site scripting (XSS) vulnerability in the author page (prive/formulaires/editer_auteur.php) in SPIP before 2.1.24 ... |
| CVE-2013-4555 | — | — | 1.2% | Nov 18, 2013 | Cross-site request forgery (CSRF) vulnerability in ecrire/action/logout.php in SPIP before 2.1.24 allows remote attacker... |
| CVE-2013-4551 | — | — | 0.8% | Nov 18, 2013 | Xen 4.2.x and 4.3.x, when nested virtualization is disabled, does not properly check the emulation paths for (1) VMLAUNC... |
| CVE-2013-4510 | — | — | 2.1% | Nov 18, 2013 | Directory traversal vulnerability in the client in Tryton 3.0.0, as distributed before 20131104 and earlier, allows remo... |
| CVE-2013-4480 | — | — | 2.1% | Nov 18, 2013 | Red Hat Satellite 5.6 and earlier does not disable the web interface that is used to create the first user for a satelli... |
| CVE-2013-4425 | — | — | 0.4% | Nov 18, 2013 | The DICOM listener in OsiriX before 5.8 and before 2.5-MD, when starting up, encrypts the TLS private key file using "Su... |
| CVE-2013-4204 | — | — | 1.1% | Nov 18, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the JUnit files in the GWTTestCase in Google Web Toolkit (GWT) be... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now