2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-3901 | — | — | 1.2% | Sep 16, 2012 | The updateTime function in sensorApp on Cisco IPS 4200 series sensors 7.0 and 7.1 allows remote attackers to cause a den... |
| CVE-2012-3899 | — | — | 1.2% | Sep 16, 2012 | sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote atta... |
| CVE-2012-3895 | — | — | 0.9% | Sep 16, 2012 | Cisco IOS 15.0 through 15.3 allows remote authenticated users to cause a denial of service (device crash) via an MVPNv6 ... |
| CVE-2012-3893 | — | — | 0.9% | Sep 16, 2012 | The FlexVPN implementation in Cisco IOS 15.2 and 15.3 allows remote authenticated users to cause a denial of service (sp... |
| CVE-2012-3096 | — | — | 1.0% | Sep 16, 2012 | Cisco Unity Connection (UC) 7.1, 8.0, and 8.5 allows remote authenticated users to cause a denial of service (resource c... |
| CVE-2012-3094 | — | — | 1.0% | Sep 16, 2012 | The VPN downloader in the download_install component in Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495 o... |
| CVE-2012-3088 | — | — | 1.8% | Sep 16, 2012 | Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495, and 3.2.x, does not check whether an HTTP request origin... |
| CVE-2012-3079 | — | — | 1.9% | Sep 16, 2012 | Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbor... |
| CVE-2012-3060 | — | — | 1.3% | Sep 16, 2012 | Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via... |
| CVE-2012-3052 | — | — | 0.4% | Sep 16, 2012 | Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL... |
| CVE-2012-3051 | — | — | 0.7% | Sep 16, 2012 | Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process cras... |
| CVE-2012-4930 | — | — | 2.1% | Sep 15, 2012 | The SPDY protocol 3 and earlier, as used in Mozilla Firefox, Google Chrome, and other products, can perform TLS encrypti... |
| CVE-2012-4929 | — | — | 4.3% | Sep 15, 2012 | The TLS protocol 1.2 and earlier, as used in Mozilla Firefox, Google Chrome, Qt, and other products, can encrypt compres... |
| CVE-2012-4928 | — | — | 1.6% | Sep 15, 2012 | Cross-site scripting (XSS) vulnerability in ow_updates/index.php in Oxwall 1.1.1 allows remote attackers to inject arbit... |
| CVE-2012-4927 | — | — | 2.2% | Sep 15, 2012 | SQL injection vulnerability in Limesurvey (a.k.a PHPSurveyor) before 1.91+ Build 120224 and earlier allows remote attack... |
| CVE-2012-4926 | — | — | 1.9% | Sep 15, 2012 | approve.php in Img Pals Photo Host 1.0 does not authenticate requests, which allows remote attackers to change the activ... |
| CVE-2012-4925 | — | — | 1.2% | Sep 15, 2012 | Multiple SQL injection vulnerabilities in approve.php in Img Pals Photo Host 1.0 allow remote attackers to execute arbit... |
| CVE-2012-4924 | — | — | 36.3% | Sep 15, 2012 | Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 all... |
| CVE-2012-4923 | — | — | 1.8% | Sep 15, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Endian Firewall 2.4 allow remote attackers to inject arbitrary we... |
| CVE-2012-4336 | — | — | 1.6% | Sep 15, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Flogr 2.5.6 and earlier allow remote attackers to in... |
| CVE-2012-3458 | — | — | 2.4% | Sep 15, 2012 | Beaker before 1.6.4, when using PyCrypto to encrypt sessions, uses AES in ECB cipher mode, which might allow remote atta... |
| CVE-2012-3233 | — | — | 2.0% | Sep 15, 2012 | Cross-site scripting (XSS) vulnerability in __swift/thirdparty/PHPExcel/PHPExcel/Shared/JAMA/docs/download.php in Kayako... |
| CVE-2012-2275 | — | — | 2.7% | Sep 15, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in TestLink 1.9.3 and earlier allow remote attackers to hijac... |
| CVE-2012-4360 | — | — | 1.1% | Sep 15, 2012 | Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.10.19.1 through 0.10.22.4 for the Apache HTTP Ser... |
| CVE-2012-4001 | — | — | 0.7% | Sep 15, 2012 | The mod_pagespeed module before 0.10.22.6 for the Apache HTTP Server does not properly verify its host name, which allow... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now