2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-4576 | — | — | 0.5% | Dec 20, 2013 | GnuPG 1.x before 1.4.16 generates RSA keys using sequences of introductions with certain patterns that introduce a side ... |
| CVE-2013-7136 | — | — | 4.2% | Dec 19, 2013 | The UPC Ireland Cisco EPC 2425 router (aka Horizon Box) does not have a sufficiently large number of possible WPA-PSK pa... |
| CVE-2013-7114 | — | — | 2.2% | Dec 19, 2013 | Multiple buffer overflows in the create_ntlmssp_v2_key function in epan/dissectors/packet-ntlmssp.c in the NTLMSSP v2 di... |
| CVE-2013-7113 | — | — | 2.2% | Dec 19, 2013 | epan/dissectors/packet-bssgp.c in the BSSGP dissector in Wireshark 1.10.x before 1.10.4 incorrectly relies on a global v... |
| CVE-2013-7112 | — | — | 2.3% | Dec 19, 2013 | The dissect_sip_common function in epan/dissectors/packet-sip.c in the SIP dissector in Wireshark 1.8.x before 1.8.12 an... |
| CVE-2013-7100 | — | — | 14.7% | Dec 19, 2013 | Buffer overflow in the unpacksms16 function in apps/app_sms.c in Asterisk Open Source 1.8.x before 1.8.24.1, 10.x before... |
| CVE-2013-6976 | — | — | 3.7% | Dec 19, 2013 | Cross-site request forgery (CSRF) vulnerability in goform/Quick_setup on Cisco EPC3925 devices allows remote attackers t... |
| CVE-2013-6877 | — | — | 11.3% | Dec 19, 2013 | Heap-based buffer overflow in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738... |
| CVE-2013-6717 | — | — | 2.4% | Dec 19, 2013 | The OLAP query engine in IBM DB2 and DB2 Connect 9.7 through FP9, 9.8 through FP5, 10.1 through FP3, and 10.5 through FP... |
| CVE-2013-6178 | — | — | 1.4% | Dec 19, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Archer GRC 5.x before 5.4 SP1 allow remote attackers to i... |
| CVE-2013-5462 | — | — | 1.8% | Dec 19, 2013 | IBM/ECMClient/configure/explodedformat/navigator/header.jsp in IBM Content Navigator 2.0.0, 2.0.1 before 2.0.1.2-ICN-FP0... |
| CVE-2013-5452 | — | — | 1.0% | Dec 19, 2013 | IBM FileNet Business Process Framework 4.1.0 allows remote authenticated users to read arbitrary files or send TCP reque... |
| CVE-2013-5426 | — | — | 0.5% | Dec 19, 2013 | Session fixation vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.x before 10.1 IF5 and... |
| CVE-2013-5422 | — | — | 1.2% | Dec 19, 2013 | The Web Client in IBM Rational ClearQuest 7.1 through 7.1.2.12, 8.0.0.x before 8.0.0.9, and 8.0.1.x before 8.0.1.2, when... |
| CVE-2013-4418 | — | — | — | Dec 19, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2013-4403 | — | — | — | Dec 19, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4404. Reason: This candidate is a reservation ... |
| CVE-2013-7086 | — | — | 3.5% | Dec 19, 2013 | The message function in lib/webbynode/notify.rb in the Webbynode gem 1.0.5.3 and earlier for Ruby allows context-depende... |
| CVE-2013-7067 | — | — | 1.2% | Dec 19, 2013 | The OG Features module 6.x-1.x before 6.x-1.4 for Drupal does not properly override pages that have an access callback s... |
| CVE-2013-7005 | — | — | 0.7% | Dec 19, 2013 | D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware b... |
| CVE-2013-7004 | — | — | 1.9% | Dec 19, 2013 | D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware b... |
| CVE-2013-6837 | — | — | 3.1% | Dec 19, 2013 | Cross-site scripting (XSS) vulnerability in the setTimeout function in js/jquery.prettyPhoto.js in prettyPhoto 3.1.4 and... |
| CVE-2013-6836 | — | — | 1.7% | Dec 19, 2013 | Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME Office Gnumeric befo... |
| CVE-2013-6824 | — | — | 2.8% | Dec 19, 2013 | Zabbix before 1.8.19rc1, 2.0 before 2.0.10rc1, and 2.2 before 2.2.1rc1 allows remote Zabbix servers and proxies to execu... |
| CVE-2013-5946 | — | — | 6.5% | Dec 19, 2013 | The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware befor... |
| CVE-2013-4776 | — | — | 7.0% | Dec 19, 2013 | NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier, GS748Tv4 5.4.1.14, and GS510TP 5.0.4.4 allows ... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now