2013 CVE Vulnerabilities

6,830 CVEs published in 2013.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2013-20005MEDIUM6.9Qool CMS 2.0 RC2 contains a cross-site request forgery vulnerability that allows attackers to perform administrative act...
CVE-2013-10074MEDIUM5.4Nagios XI versions prior to 2012R2.6 are vulnerable to cross-site scripting (XSS) via the Tools Menu of the web interfac...
CVE-2013-10072MEDIUM6.5Nagios XI versions prior to 2012R1.6 contain an authorization flaw in the Auto-Discovery functionality. Users with read-...
CVE-2013-10071MEDIUM6.1Nagios XI versions prior to 2012R1.6 contain a reflected cross-site scripting (XSS) vulnerability in the dashboard dashl...
CVE-2013-10063MEDIUM6.9A path traversal vulnerability exists in the Netgear SPH200D Skype phone firmware versions <= 1.0.4.80 in its embedded w...
CVE-2013-10062MEDIUM6.9A directory traversal vulnerability exists in Linksys router's web interface (tested on the E1500 model firmware version...
CVE-2013-1424MEDIUM5.6Buffer overflow vulnerability in matplotlib.This issue affects matplotlib: before upstream commit ba4016014cb4fb4927e36c...
CVE-2013-10028MEDIUM6.1A vulnerability was found in EELV Newsletter Plugin 2.x on WordPress. It has been rated as problematic. Affected by this...
CVE-2013-10026MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Mail Subscribe List Plugin up to 2.0.10 on WordP...
CVE-2013-10022MEDIUM6.1A vulnerability, which was classified as problematic, has been found in BestWebSoft Contact Form Plugin 3.51 on WordPres...
CVE-2013-10021MEDIUM6.1A vulnerability was found in dd32 Debug Bar Plugin up to 0.8 on WordPress. It has been declared as problematic. Affected...
CVE-2013-10020MEDIUM6.1A vulnerability, which was classified as problematic, was found in MMDeveloper A Forms Plugin up to 1.4.2 on WordPress. ...
CVE-2013-10010MEDIUM6.1A vulnerability classified as problematic has been found in zerochplus. This affects the function PrintResList of the fi...
CVE-2013-4281MEDIUM5.5In Red Hat Openshift 1, weak default permissions are applied to the /etc/openshift/server_priv.pem file on the broker se...
CVE-2013-4170MEDIUM6.1In general, Ember.js escapes or strips any user-supplied content before inserting it in strings that will be sent to inn...
CVE-2013-1891MEDIUM6.5In OpenCart 1.4.7 to 1.5.5.1, implemented anti-traversal code in filemanager.php is ineffective and can be bypassed.
CVE-2013-10001MEDIUM5.9A vulnerability was found in HTC One/Sense 4.x. It has been rated as problematic. Affected by this issue is the certific...
CVE-2013-4718MEDIUM5.4Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) ITSM 3.0.x before 3.0.9, 3.1.x before 3.1....
CVE-2013-1055MEDIUM4.3The unity-firefox-extension package could be tricked into dropping a C callback which was still in use, which Firefox wo...
CVE-2013-1054MEDIUM6.5The unity-firefox-extension package could be tricked into destroying the Unity webapps context, causing Firefox to crash...
CVE-2013-1053MEDIUM5.5In crypt.c of remote-login-service, the cryptographic algorithm used to cache usernames and passwords is insecure. An at...
CVE-2013-7491MEDIUM5.3An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function re...
CVE-2013-7490MEDIUM5.3An issue was discovered in the DBI module before 1.632 for Perl. Using many arguments to methods for Callbacks may lead ...
CVE-2013-7489MEDIUM6.8The Beaker library through 1.11.0 for Python is affected by deserialization of untrusted data, which could lead to arbit...
CVE-2013-3587MEDIUM5.9The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating th...

Check if your code is affected by 2013 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now