2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1653 | — | — | 1.1% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the Taxonomy Views Integrator (TVI) module 6.x-1.x before 6.x-1.3 for Drupal... |
| CVE-2012-1652 | — | — | 1.1% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 6.x-3.x before 6.x-3.8 for Drupal allows remo... |
| CVE-2012-1651 | — | — | 1.0% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the Submenu Tree module before 6.x-1.5 for Drupal allows remote authenticate... |
| CVE-2012-4408 | — | — | 1.1% | Sep 19, 2012 | course/reset.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 checks an update capability in... |
| CVE-2012-4407 | — | — | 1.4% | Sep 19, 2012 | lib/filelib.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 does not properly check the pub... |
| CVE-2012-4403 | — | — | 1.4% | Sep 19, 2012 | theme/yui_combo.php in Moodle 2.3.x before 2.3.2 does not properly construct error responses for the drag-and-drop scrip... |
| CVE-2012-4402 | — | — | 1.0% | Sep 19, 2012 | webservice/lib.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 does not properly restrict t... |
| CVE-2012-4401 | — | — | 1.1% | Sep 19, 2012 | Moodle 2.2.x before 2.2.5 and 2.3.x before 2.3.2 allows remote authenticated users to bypass intended capability restric... |
| CVE-2012-4400 | — | — | 1.1% | Sep 19, 2012 | repository/repository_ajax.php in Moodle 2.2.x before 2.2.5 and 2.3.x before 2.3.2 allows remote authenticated users to ... |
| CVE-2012-2586 | — | — | 2.5% | Sep 19, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Mailtraq 2.17.3.3150 allow remote attackers to inject arbitrary w... |
| CVE-2012-2578 | — | — | 2.5% | Sep 19, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in SmarterMail 9.2 allow remote attackers to inject arbitrary web sc... |
| CVE-2012-0272 | — | — | 1.3% | Sep 19, 2012 | Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 8.0 before Support Pack 3 allows... |
| CVE-2012-0271 | — | — | 17.1% | Sep 19, 2012 | Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 befo... |
| CVE-2012-3258 | — | — | 9.9% | Sep 19, 2012 | Unspecified vulnerability in HP Operations Orchestration 9.0 before 9.03 allows remote attackers to execute arbitrary co... |
| CVE-2012-1660 | — | — | 1.3% | Sep 18, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in components/select.inc in the Webform module 6.x-3.x before 6.x-3.... |
| CVE-2012-1659 | — | — | 1.1% | Sep 18, 2012 | Cross-site scripting (XSS) vulnerability in the Node Recommendation module 6.x-1.x before 6.x-1.1 for Drupal allows remo... |
| CVE-2012-1658 | — | — | 1.1% | Sep 18, 2012 | Cross-site scripting (XSS) vulnerability in the Read More Link module 6.x-3.x before 6.x-3.1 for Drupal allows remote au... |
| CVE-2012-1657 | — | — | 1.6% | Sep 18, 2012 | Cross-site scripting (XSS) vulnerability in block_class.module in the Block Class module before 7.x-1.1 for Drupal allow... |
| CVE-2012-1656 | — | — | 1.3% | Sep 18, 2012 | SQL injection vulnerability in the Multisite Search module 6.x-2.2 for Drupal allows remote authenticated users with cer... |
| CVE-2012-1655 | — | — | 1.1% | Sep 18, 2012 | Unspecified vulnerability in the UC PayDutchGroup / WeDeal payment module 6.x-1.0 for Drupal allows remote authenticated... |
| CVE-2012-1654 | — | — | 1.9% | Sep 18, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Data module 6.x-1.x before 6.x-1.0 and 7.x-1.x before 7.x-1.0... |
| CVE-2012-1901 | — | — | 1.1% | Sep 18, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in FlexCMS 3.2.1 and earlier allow remote attackers to (1) hi... |
| CVE-2012-1184 | — | — | 16.4% | Sep 18, 2012 | Stack-based buffer overflow in the ast_parse_digest function in main/utils.c in Asterisk 1.8.x before 1.8.10.1 and 10.x ... |
| CVE-2012-1183 | — | — | 3.7% | Sep 18, 2012 | Stack-based buffer overflow in the milliwatt_generate function in the Miliwatt application in Asterisk 1.4.x before 1.4.... |
| CVE-2012-4425 | — | — | 1.1% | Sep 18, 2012 | libgio, when used in setuid or other privileged programs in spice-gtk and possibly other products, allows local users to... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now