2013 CVE Vulnerabilities

6,831 CVEs published in 2013.

CVE IDSeverityCVSSDescription
CVE-2013-6329——IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote a...
CVE-2013-6327——Cross-site scripting (XSS) vulnerability in the HTTP Option in IBM Sterling Connect:Enterprise 1.3 before 1.3.0.2 iFix 1...
CVE-2013-6193——Unspecified vulnerability on HP LaserJet M1522n and M2727; LaserJet Pro 100, 300, 400, CM1415fnw, CP1*, M121*, M1536dnf,...
CVE-2013-6038——Stack-based buffer overflow in Trimble SketchUp Viewer 13.0.4124 allows remote attackers to execute arbitrary code via a...
CVE-2013-2816——The DNP3 component in Cooper Power Systems SMP 4, 4/DP, and 16 gateways allows physically proximate attackers to cause a...
CVE-2013-2814——Cooper Power Systems Cybectec DNP3 Master OPC Server allows remote attackers to cause a denial of service (unhandled exc...
CVE-2013-2813——The DNP3 component in Cooper Power Systems SMP 4, 4/DP, and 16 gateways allows remote attackers to cause a denial of ser...
CVE-2013-6966——Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web si...
CVE-2013-6926——The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote authenticated users to bypass intended ...
CVE-2013-6925——The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote attackers to hijack web sessions by pre...
CVE-2013-6420——The asn1_time_to_time_t function in ext/openssl/openssl.c in PHP before 5.3.28, 5.4.x before 5.4.23, and 5.5.x before 5....
CVE-2013-6192——Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration before 9 allows remote attackers to hijac...
CVE-2013-6191——Cross-site scripting (XSS) vulnerability in HP Operations Orchestration before 9 allows remote attackers to inject arbit...
CVE-2013-3140——Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a cr...
CVE-2013-6973——Cisco WebEx Training Center allows remote attackers to discover registration IDs via a crafted URL, aka Bug ID CSCul5712...
CVE-2013-6972——Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conf...
CVE-2013-6971——Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web si...
CVE-2013-6970——Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages wit...
CVE-2013-6969——The training-registration page in Cisco WebEx Training Center allows remote attackers to modify unspecified fields via u...
CVE-2013-6968——Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail ...
CVE-2013-6967——Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remote attackers to redir...
CVE-2013-6965——The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation i...
CVE-2013-6964——Cisco WebEx Meeting Center allows remote authenticated users to bypass access control and inject content from a differen...
CVE-2013-6963——Cross-site scripting (XSS) vulnerability in the registration component in Cisco WebEx Training Center allows remote atta...
CVE-2013-6962——Cross-site scripting (XSS) vulnerability in the mobile-browser subsystem in Cisco WebEx Meeting Center allows remote att...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now