2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1632 | — | — | 0.9% | Sep 20, 2012 | Cross-site scripting (XSS) vulnerability in password_policy.admin.inc in the Password Policy module before 6.x-1.4 and 7... |
| CVE-2012-1627 | — | — | 1.6% | Sep 20, 2012 | Cross-site scripting (XSS) vulnerability in vud_term.module in the Vote Up/Down module 6.x-2.x before 6.x-2.8 and 6.x-3.... |
| CVE-2012-0988 | — | — | 1.8% | Sep 20, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in config/dmsDefaults.php in KnowledgeTree 3.7.0.2 and possibly earl... |
| CVE-2012-5006 | — | — | 4.3% | Sep 19, 2012 | Heap-based buffer overflow in npdjvu.dll in Caminova DjVu Browser Plug-in 6.1.4 Build 27351 and other versions before 6.... |
| CVE-2012-5005 | — | — | 1.1% | Sep 19, 2012 | Cross-site request forgery (CSRF) vulnerability in admin/admin_options.php in VR GPub 4.0 allows remote attackers to hij... |
| CVE-2012-5004 | — | — | 0.9% | Sep 19, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in Parallels H-Sphere 3.3 Patch 1 allow remote attackers to h... |
| CVE-2012-5003 | — | — | 3.2% | Sep 19, 2012 | nxapplet.jar in No Machine NX Web Companion 3.x and earlier does not properly verify the authenticity of updates, which ... |
| CVE-2012-1640 | — | — | 1.0% | Sep 19, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Managesite module 6.x-1.x before 6.1-1.1 for Drupal allow rem... |
| CVE-2012-1638 | — | — | 1.1% | Sep 19, 2012 | SQL injection vulnerability in the Search Autocomplete module before 7.x-2.1 for Drupal allows remote authenticated user... |
| CVE-2012-5002 | — | — | 31.2% | Sep 19, 2012 | Stack-based buffer overflow in SR10 FTP server (SR10.exe) 1.1.0.6 in Ricoh DC Software DL-10 4.5.0.1, when the Log file ... |
| CVE-2012-5001 | — | — | 2.9% | Sep 19, 2012 | Multiple unspecified vulnerabilities in Hitachi JP1/Cm2/Network Node Manager i before 09-50-03 allow remote attackers to... |
| CVE-2012-5000 | — | — | 1.1% | Sep 19, 2012 | SQL injection vulnerability in jokes/index.php in the Witze addon 0.9 for deV!L'z Clanportal allows remote attackers to ... |
| CVE-2012-4999 | — | — | 6.6% | Sep 19, 2012 | Mercury MR804 Router 8.0 3.8.1 Build 101220 Rel.53006nB allows remote attackers to cause a denial of service (service ha... |
| CVE-2012-4998 | — | — | 1.7% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in index.php in starCMS allows remote attackers to inject arbitrary web script ... |
| CVE-2012-4997 | — | — | 2.8% | Sep 19, 2012 | Directory traversal vulnerability in acp/index.php in AneCMS allows remote attackers to include and execute arbitrary lo... |
| CVE-2012-4996 | — | — | 1.2% | Sep 19, 2012 | Multiple SQL injection vulnerabilities in RivetTracker 1.03 and earlier allow remote attackers to execute arbitrary SQL ... |
| CVE-2012-4995 | — | — | 1.2% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in admin/userrighthandling.php in LimeSurvey before 1.91+ Build 120224 allows r... |
| CVE-2012-4994 | — | — | 1.0% | Sep 19, 2012 | SQL injection vulnerability in admin/admin.php in LimeSurvey before 1.91+ Build 120224 allows remote authenticated users... |
| CVE-2012-4993 | — | — | 2.3% | Sep 19, 2012 | torrent_functions.php in RivetTracker 1.03 and earlier does not properly restrict access, which allows remote attackers ... |
| CVE-2012-4992 | — | — | 17.7% | Sep 19, 2012 | Multiple buffer overflows in FlashFXP.exe in FlashFXP 4.2 allow remote authenticated users to execute arbitrary code via... |
| CVE-2012-3373 | — | — | 3.3% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in Apache Wicket 1.4.x before 1.4.21 and 1.5.x before 1.5.8 allows remote attac... |
| CVE-2012-2991 | — | — | 1.1% | Sep 19, 2012 | The PayPal (aka MODULE_PAYMENT_PAYPAL_STANDARD) module before 1.1 in osCommerce Online Merchant before 2.3.4 allows remo... |
| CVE-2012-2105 | — | — | 1.9% | Sep 19, 2012 | Multiple SQL injection vulnerabilities in login.php in Timesheet Next Gen 1.5.2 allow remote attackers to execute arbitr... |
| CVE-2012-1653 | — | — | 1.1% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the Taxonomy Views Integrator (TVI) module 6.x-1.x before 6.x-1.3 for Drupal... |
| CVE-2012-1652 | — | — | 1.1% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 6.x-3.x before 6.x-3.8 for Drupal allows remo... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now