Wind River Support Network

HomeCVE Database

The Common Vulnerabilities and Exposures (CVE) project, maintained by the MITRE Corporation, is a list of all standardized names for vulnerabilities and security exposures.

Reset
Showing
of 171507 entries
IDDescriptionPriorityModified dateFixed Release
CVE-2013-7245 The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP Security Note 1927859. MEDIUM Apr 24, 2018 n/a
CVE-2013-7203 gitolite before commit fa06a34 might allow local users to read arbitrary files in repositories via vectors related to the user umask when running gitolite setup. LOW Sep 21, 2018 n/a
CVE-2013-7202 The WebHybridClient class in PayPal 5.3 and earlier for Android allows remote attackers to execute arbitrary JavaScript on the system. MEDIUM Apr 27, 2018 n/a
CVE-2013-7201 WebHybridClient.java in PayPal 5.3 and earlier for Android ignores SSL errors, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information. MEDIUM Apr 27, 2018 n/a
CVE-2013-7185 PotPlayer 1.5.40688: .avi File Memory Corruption MEDIUM Jan 14, 2020 n/a
CVE-2013-7173 Belkin n750 routers have a buffer overflow. HIGH Feb 14, 2020 n/a
CVE-2013-7172 Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges. HIGH Nov 21, 2019 n/a
CVE-2013-7171 Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directory which could allow remote attackers to execute arbitrary code with root privileges. HIGH Nov 21, 2019 n/a
CVE-2013-7169 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7168 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7167 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7166 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7165 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7164 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7148 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7147 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7146 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7145 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7126 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7125 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7124 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7123 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7122 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7121 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7120 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7119 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7118 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7117 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7116 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7115 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2013. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7109 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none -- Feb 20, 2020 n/a
CVE-2013-7098 OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection. HIGH Feb 20, 2020 n/a
CVE-2013-7089 ClamAV before 0.97.7: dbg_printhex possible information leak MEDIUM Nov 20, 2019 n/a
CVE-2013-7088 ClamAV before 0.97.7 has buffer overflow in the libclamav component HIGH Nov 20, 2019 n/a
CVE-2013-7087 ClamAV before 0.97.7 has WWPack corrupt heap memory HIGH Nov 20, 2019 n/a
CVE-2013-7072 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a unique security issue, and some vulnerability databases had associated inapplicable details with this ID. Notes: none -- Nov 7, 2023 n/a
CVE-2013-7071 Cross-site scripting (XSS) vulnerability in the handle_request function in lib/HTTPServer.pm in Monitorix before 3.4.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. MEDIUM Jan 8, 2020 n/a
CVE-2013-7070 The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI. HIGH Jan 9, 2020 n/a
CVE-2013-7062 Multiple cross-site scripting (XSS) vulnerabilities in Zope, as used in Plone 3.3.x through 3.3.6, 4.0.x through 4.0.9, 4.1.x through 4.1.6, 4.2.x through 4.2.7, and 4.3 through 4.3.2, allow remote attackers to inject arbitrary web script or HTML via unspecified input in the (1) browser_id_manager or (2) OFS.Image method. MEDIUM Jan 9, 2020 n/a
CVE-2013-7055 D-Link DIR-100 4.03B07 has PPTP and poe information disclosure MEDIUM Feb 4, 2020 n/a
CVE-2013-7054 D-Link DIR-100 4.03B07: cli.cgi XSS MEDIUM Feb 4, 2020 n/a
CVE-2013-7053 D-Link DIR-100 4.03B07: cli.cgi CSRF MEDIUM Feb 4, 2020 n/a
CVE-2013-7052 D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script MEDIUM Feb 4, 2020 n/a
CVE-2013-7051 D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters MEDIUM Feb 4, 2020 n/a
CVE-2013-6995 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none -- Nov 7, 2023 n/a
CVE-2013-6927 Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account. LOW Feb 14, 2020 n/a
CVE-2013-6924 Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbitrary commands via shell metacharacters in the ip parameter to backupmgt/getAlias.php. -- Oct 11, 2017 n/a
CVE-2013-6880 Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to arbitrary web sites and conduct cross-site scripting (XSS) attacks via the HTTP Referer header. MEDIUM Nov 22, 2019 n/a
CVE-2013-6879 The Mijosoft MijoSearch component 2.0.1 and earlier for Joomla! allows remote attackers to obtain sensitive information via a request to component/mijosearch/search, which reveals the installation path in an error message. MEDIUM Nov 22, 2019 n/a
CVE-2013-6878 Cross-site scripting (XSS) vulnerability in the Mijosoft MijoSearch component 2.0.4 and earlier for Joomla! allows remote attackers to inject arbitrary web script or HTML via the query parameter to component/mijosearch/search. MEDIUM Nov 22, 2019 n/a
The 'Fixed Release' column is displayed if a single product version is selected from the filter. The fixed release is applicable in cases when the CVE has been addressed and fixed for that product version. Requires LTSS - customers must have active LTSS (Long Term Security Shield) Support to receive up-to-date information about vulnerabilities that may affect legacy software. Please contact your Wind River account team or see https://docs.windriver.com/bundle/Support_and_Maintenance_Supplemental_Terms_and_Conditions and https://support2.windriver.com/index.php?page=plc for more information.
Live chat
Online