2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-0728 | — | — | 1.0% | Sep 10, 2012 | SQL injection vulnerability in IBM Maximo Asset Management 7.1 through 7.5, as used in SmartCloud Control Desk, Tivoli A... |
| CVE-2012-0727 | — | — | 1.0% | Sep 10, 2012 | SQL injection vulnerability in IBM Maximo Asset Management 7.5, as used in SmartCloud Control Desk, Tivoli Asset Managem... |
| CVE-2012-0714 | — | — | 1.0% | Sep 10, 2012 | Cross-site request forgery (CSRF) vulnerability in IBM Maximo Asset Management 6.2 through 7.5, as used in SmartCloud Co... |
| CVE-2012-4885 | — | — | 1.9% | Sep 9, 2012 | The wikitext parser in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 allows remote attackers to cause a denial... |
| CVE-2012-2316 | — | — | 4.3% | Sep 9, 2012 | Cross-site request forgery (CSRF) vulnerability in servlet/admin/AuthServlet.java in OpenKM 5.1.7 and other versions bef... |
| CVE-2012-2315 | — | — | 6.2% | Sep 9, 2012 | admin/Auth in OpenKM 5.1.7 and other versions before 5.1.8-2 does not properly enforce privileges for changing user role... |
| CVE-2012-2115 | — | — | 2.1% | Sep 9, 2012 | SQL injection vulnerability in interface/login/validateUser.php in OpenEMR 4.1.0 and possibly earlier allows remote atta... |
| CVE-2012-1912 | — | — | 2.4% | Sep 9, 2012 | Cross-site scripting (XSS) vulnerability in preferences.php in PHP Address Book 7.0 and earlier allows remote attackers ... |
| CVE-2012-1911 | — | — | 1.2% | Sep 9, 2012 | Multiple SQL injection vulnerabilities in PHP Address Book 6.2.12 and earlier allow remote attackers to execute arbitrar... |
| CVE-2012-1649 | — | — | 1.2% | Sep 9, 2012 | Cool Aid module before 6.x-1.9 for Drupal does not enforce access restrictions, which allows remote authenticated users ... |
| CVE-2012-1648 | — | — | 1.1% | Sep 9, 2012 | Cross-site scripting (XSS) vulnerability in the Cool Aid module before 6.x-1.9 for Drupal allows remote authenticated us... |
| CVE-2012-1582 | — | — | 2.4% | Sep 9, 2012 | Cross-site scripting (XSS) vulnerability in the wikitext parser in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18... |
| CVE-2012-1581 | — | — | 1.6% | Sep 9, 2012 | MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes ... |
| CVE-2012-1580 | — | — | 1.5% | Sep 9, 2012 | Cross-site request forgery (CSRF) vulnerability in Special:Upload in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.... |
| CVE-2012-1579 | — | — | 1.7% | Sep 9, 2012 | The resource loader in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 includes private data such as CSRF tokens... |
| CVE-2012-1578 | — | — | 1.3% | Sep 9, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 al... |
| CVE-2012-1152 | — | — | 2.4% | Sep 9, 2012 | Multiple format string vulnerabilities in the error reporting functionality in the YAML::LibYAML (aka YAML-LibYAML and p... |
| CVE-2012-1151 | — | — | 2.7% | Sep 9, 2012 | Multiple format string vulnerabilities in dbdimp.c in DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.19.0 for Pe... |
| CVE-2012-4012 | — | — | 1.2% | Sep 8, 2012 | The WebView class in the Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary ... |
| CVE-2012-4011 | — | — | 3.1% | Sep 8, 2012 | The Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary Java methods, and obt... |
| CVE-2012-3257 | — | — | 1.1% | Sep 8, 2012 | HP Business Availability Center (BAC) 8.07 allows remote authenticated users to hijack web sessions via unspecified vect... |
| CVE-2012-3256 | — | — | 1.0% | Sep 8, 2012 | Cross-site request forgery (CSRF) vulnerability in HP Business Availability Center (BAC) 8.07 allows remote attackers to... |
| CVE-2012-3255 | — | — | 1.6% | Sep 8, 2012 | Cross-site scripting (XSS) vulnerability in HP Business Availability Center (BAC) 8.07 allows remote attackers to inject... |
| CVE-2012-3004 | — | — | 0.4% | Sep 8, 2012 | Multiple untrusted search path vulnerabilities in RealFlex RealWin before 2.1.13, FlexView before 3.1.86, and RealWinDem... |
| CVE-2012-1666 | — | — | 0.8% | Sep 8, 2012 | Untrusted search path vulnerability in VMware Tools in VMware Workstation before 8.0.4, VMware Player before 4.0.4, VMwa... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now