2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-5101——SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla! allows remote attackers to execu...
CVE-2012-5100——Directory traversal vulnerability in HServer 0.1.1 allows remote attackers to read arbitrary files via a (1) ..%5c (dot ...
CVE-2012-5099——Cross-site scripting (XSS) vulnerability in list.php in PHPB2B 4.1 and earlier allows remote attackers to inject arbitra...
CVE-2012-5098——Multiple SQL injection vulnerabilities in Php-X-Links, possibly 1.0, allow remote attackers to execute arbitrary SQL com...
CVE-2012-3137——The authentication protocol in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 all...
CVE-2012-2557——Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary cod...
CVE-2012-2548——Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a cr...
CVE-2012-2546——Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a cr...
CVE-2012-1529——Use-after-free vulnerability in Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code vi...
CVE-2012-3747——WebKit, as used in Apple iOS before 6, allows remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2012-3746——UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-depende...
CVE-2012-3745——Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflo...
CVE-2012-3744——Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remot...
CVE-2012-3743——The System Logs implementation in Apple iOS before 6 does not restrict /var/log access by sandboxed apps, which allows r...
CVE-2012-3742——Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to th...
CVE-2012-3741——The Restrictions (aka Parental Controls) implementation in Apple iOS before 6 does not properly handle purchase attempts...
CVE-2012-3740——The Passcode Lock implementation in Apple iOS before 6 does not properly manage the lock state, which allows physically ...
CVE-2012-3739——The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passc...
CVE-2012-3738——The Emergency Dialer screen in the Passcode Lock implementation in Apple iOS before 6 does not properly limit the dialin...
CVE-2012-3737——The Passcode Lock implementation in Apple iOS before 6 does not properly restrict photo viewing, which allows physically...
CVE-2012-3736——The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passc...
CVE-2012-3735——The Passcode Lock implementation in Apple iOS before 6 does not properly interact with the "Slide to Power Off" feature,...
CVE-2012-3734——Office Viewer in Apple iOS before 6 writes cleartext document data to a temporary file, which might allow local users to...
CVE-2012-3733——Messages in Apple iOS before 6, when multiple iMessage e-mail addresses are configured, does not ensure that a reply's s...
CVE-2012-3732——Mail in Apple iOS before 6 uses an S/MIME message's From address as the displayed sender address, which allows remote at...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now