2013 CVE Vulnerabilities
6,830 CVEs published in 2013.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2013-6357 | — | — | 2.5% | Nov 13, 2013 | Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 and earlier allows re... |
| CVE-2013-5990 | — | — | 4.6% | Nov 13, 2013 | Unspecified vulnerability in JustSystems Ichitaro 2006 through 2011; Ichitaro Government 6, 7, and 2006 through 2010; Ic... |
| CVE-2013-5568 | — | — | 1.2% | Nov 13, 2013 | The auto-update implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earlier allows remote att... |
| CVE-2013-5560 | — | — | 2.0% | Nov 13, 2013 | The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1.3 and earlier, when NAT64 or NAT66 is en... |
| CVE-2013-5552 | — | — | 1.2% | Nov 13, 2013 | Cisco IOS 12.4(24)MDB9 and earlier on Content Services Gateway (CSG) devices does not properly implement the "parse erro... |
| CVE-2013-5453 | — | — | 0.9% | Nov 13, 2013 | IBM Security AppScan Enterprise 5.6 through 8.7.0.1 allows remote authenticated users to read arbitrary report files by ... |
| CVE-2013-5450 | — | — | 0.8% | Nov 13, 2013 | IBM Security AppScan Enterprise 8.5 through 8.7.0.1, when Jazz authentication is enabled, allows man-in-the-middle attac... |
| CVE-2013-5442 | — | — | 1.8% | Nov 13, 2013 | Cross-site scripting (XSS) vulnerability in the Local Management Interface (LMI) in IBM Security Network Protection on X... |
| CVE-2013-5379 | — | — | 0.9% | Nov 13, 2013 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 7.x before 7.0.0.2 CF25 and 8.x before 8.0.0.1 CF8 allo... |
| CVE-2013-5378 | — | — | 0.9% | Nov 13, 2013 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.x before 8.0.0.1 CF8 allows remote authenticated user... |
| CVE-2013-4476 | — | — | 0.4% | Nov 13, 2013 | Samba 4.0.x before 4.0.11 and 4.1.x before 4.1.1, when LDAP or HTTP is provided over SSL, uses world-readable permission... |
| CVE-2013-4475 | — | — | 9.0% | Nov 13, 2013 | Samba 3.2.x through 3.6.x before 3.6.20, 4.0.x before 4.0.11, and 4.1.x before 4.1.1, when vfs_streams_depot or vfs_stre... |
| CVE-2013-2931 | — | — | 2.3% | Nov 13, 2013 | Multiple unspecified vulnerabilities in Google Chrome before 31.0.1650.48 allow attackers to execute arbitrary code or p... |
| CVE-2013-5330 | — | — | 11.3% | Nov 13, 2013 | Adobe Flash Player before 11.7.700.252 and 11.8.x and 11.9.x before 11.9.900.152 on Windows and Mac OS X and before 11.2... |
| CVE-2013-5329 | — | — | 5.8% | Nov 13, 2013 | Adobe Flash Player before 11.7.700.252 and 11.8.x and 11.9.x before 11.9.900.152 on Windows and Mac OS X and before 11.2... |
| CVE-2013-5328 | — | — | 3.1% | Nov 13, 2013 | Adobe ColdFusion 10 before Update 12 allows remote attackers to read arbitrary files via unspecified vectors. |
| CVE-2013-5326 | — | — | 1.8% | Nov 13, 2013 | Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 9.0 before Update 12, 9.0.1 before Update 11, 9.0.2 before ... |
| CVE-2013-6789 | — | — | 1.1% | Nov 13, 2013 | security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allows remote or local a... |
| CVE-2013-3940 | — | — | 34.5% | Nov 13, 2013 | Integer overflow in the Graphics Device Interface (GDI) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Wi... |
| CVE-2013-3917 | — | — | 17.8% | Nov 13, 2013 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3916 | — | — | 17.8% | Nov 13, 2013 | Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3915 | — | — | 19.2% | Nov 13, 2013 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3914 | — | — | 19.2% | Nov 13, 2013 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3912 | — | — | 19.1% | Nov 13, 2013 | Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2013-3911 | — | — | 19.1% | Nov 13, 2013 | Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (mem... |
Check if your code is affected by 2013 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now