Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    HIGH
    CVE-2013-3311

    Directory traversal vulnerability in the Loftek Nexus 543 IP Camera allows remote attackers to read arbitrary files via a .. (dot dot) in the URL of an HTTP GET request.... Read more

    Affected Products : nexus_543_firmware nexus_543
    • EPSS Score: %1.84
    • Published: Nov. 21, 2019
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2013-3247

    Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compressed layer in an XCF file.... Read more

    Affected Products : xnview
    • EPSS Score: %1.20
    • Published: Jan. 02, 2020
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2013-3246

    Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer in an XCF file.... Read more

    Affected Products : xnview
    • EPSS Score: %1.65
    • Published: Jan. 02, 2020
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3215

    vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in the validateSession function.... Read more

    Affected Products : vtiger_crm
    • EPSS Score: %73.67
    • Published: Jan. 29, 2020
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3214

    vtiger CRM 5.4.0 and earlier contain a PHP Code Injection Vulnerability in 'vtigerolservice.php'.... Read more

    Affected Products : vtiger_crm
    • EPSS Score: %89.07
    • Published: Jan. 28, 2020
    • Modified: Nov. 21, 2024
  • 8.1

    HIGH
    CVE-2013-3212

    vtiger CRM 5.4.0 and earlier contain local file-include vulnerabilities in 'customerportal.php' which allows remote attackers to view files and execute local script code.... Read more

    Affected Products : vtiger_crm
    • EPSS Score: %23.05
    • Published: Jan. 28, 2020
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2013-3097

    Unspecified Cross-site scripting (XSS) vulnerability in the Verizon FIOS Actiontec MI424WR-GEN3I router.... Read more

    • EPSS Score: %0.40
    • Published: Nov. 13, 2019
    • Modified: Nov. 21, 2024
  • 5.9

    MEDIUM
    CVE-2013-3096

    D-Link DIR865L v1.03 suffers from an "Unauthenticated Hardware Linking" vulnerability.... Read more

    Affected Products : dir865l_firmware dir865l
    • EPSS Score: %0.48
    • Published: Feb. 07, 2020
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    • EPSS Score: %0.16
    • Published: Jan. 28, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2013-3091

    An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."... Read more

    Affected Products : n300 n300_firmware
    • EPSS Score: %5.03
    • Published: Feb. 07, 2020
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3088

    Belkin N900 router (F9K1104v1) contains an Authentication Bypass using "Javascript debugging".... Read more

    Affected Products : n900_firmware n900
    • EPSS Score: %0.18
    • Published: Dec. 26, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3085

    An authentication bypass exists in the web management interface in Belkin F5D8236-4 v2.... Read more

    Affected Products : f5d8236-4 f5d8236-4_firmware
    • EPSS Score: %0.14
    • Published: Dec. 26, 2019
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2013-3074

    NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash).... Read more

    Affected Products : wndr4700_firmware wndr4700
    • EPSS Score: %0.52
    • Published: Jan. 28, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2013-3073

    A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34.... Read more

    Affected Products : wndr4700_firmware wndr4700
    • EPSS Score: %6.69
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3072

    An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that when visited by any user, authenticated or not, causes the router to no longer require a password to access... Read more

    Affected Products : wndr4700_firmware wndr4700
    • EPSS Score: %1.58
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2013-3071

    NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.... Read more

    Affected Products : wndr4700_firmware wndr4700
    • EPSS Score: %1.24
    • Published: Jan. 28, 2020
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2013-3070

    An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.... Read more

    Affected Products : wndr4700_firmware wndr4700
    • EPSS Score: %2.03
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 5.4

    MEDIUM
    CVE-2013-3067

    Linksys WRT310Nv2 2.0.0.1 is vulnerable to XSS.... Read more

    Affected Products : wrt310n_firmware wrt310n
    • EPSS Score: %0.26
    • Published: Feb. 07, 2020
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2013-3024

    IBM WebSphere Application Server (WAS) 8.5 through 8.5.0.2 on UNIX allows local users to gain privileges by leveraging improper process initialization. IBM X-Force ID: 84362.... Read more

    Affected Products : websphere_application_server
    • EPSS Score: %0.04
    • Published: May. 24, 2018
    • Modified: Nov. 21, 2024
  • 8.1

    HIGH
    CVE-2013-3023

    IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2 and 7.2.0 through 7.2.1.4 might allow remote attackers to obtain sensitive information about Tomcat credentials by sniffing the network for a session in which HTTP is used. IBM X-Force ID: ... Read more

    • EPSS Score: %0.29
    • Published: May. 24, 2018
    • Modified: Nov. 21, 2024
Showing 20 of 291736 Results