2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1972 | — | — | 5.6% | Aug 29, 2012 | Use-after-free vulnerability in the nsHTMLEditor::CollapseAdjacentTextNodes function in Mozilla Firefox before 15.0, Fir... |
| CVE-2012-1971 | — | — | 3.8% | Aug 29, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 15.0, Thunderbird before 15.0, and ... |
| CVE-2012-1970 | — | — | 5.6% | Aug 29, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.... |
| CVE-2012-1956 | — | — | 1.9% | Aug 29, 2012 | Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12 do not prevent use of the Object.defineP... |
| CVE-2012-0308 | — | — | 1.9% | Aug 29, 2012 | Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers ... |
| CVE-2012-0307 | — | — | 2.0% | Aug 29, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Symantec Messaging Gateway (SMG) before 10.0 allow remote attacke... |
| CVE-2012-4686 | — | — | 1.1% | Aug 28, 2012 | SQL injection vulnerability in announcement.php in vBulletin 4.1.10 allows remote attackers to execute arbitrary SQL com... |
| CVE-2012-4685 | — | — | 1.8% | Aug 28, 2012 | Cross-site scripting (XSS) vulnerability in Arbor Networks Peakflow SP 5.1.1 before patch 6, 5.5 before patch 4, and 5.6... |
| CVE-2012-2085 | — | — | 3.2% | Aug 28, 2012 | The exec_command function in common/helpers.py in Gajim before 0.15 allows user-assisted remote attackers to execute arb... |
| CVE-2012-1650 | — | — | 1.2% | Aug 28, 2012 | The ZipCart module 6.x before 6.x-1.4 for Drupal checks the "access content" permission instead of the "access ZipCart d... |
| CVE-2012-1647 | — | — | 1.7% | Aug 28, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the "stand alone PHP application for the OSM Player," as used in ... |
| CVE-2012-1645 | — | — | 1.4% | Aug 28, 2012 | The CDN module 6.x-2.2 and 7.x-2.2 for Drupal, when running in Origin Pull mode with the "Far Future expiration" option ... |
| CVE-2012-1644 | — | — | 1.1% | Aug 28, 2012 | The Organic Groups (OG) Vocabulary module 6.x-1.x before 6.x-1.2 for Drupal allows remote authenticated users with certa... |
| CVE-2012-1643 | — | — | 1.5% | Aug 28, 2012 | The Faster Permissions module 7.x-2.x before 7.x-1.2 for Drupal does not check the "administer permissions" permission, ... |
| CVE-2012-1642 | — | — | 2.3% | Aug 28, 2012 | includes/linkchecker.pages.inc in the Link checker module 6.x-2.x before 6.x-2.5 for Drupal does not properly enforce ac... |
| CVE-2012-1641 | — | — | 2.3% | Aug 28, 2012 | The finder_import function in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for ... |
| CVE-2012-1635 | — | — | 1.4% | Aug 28, 2012 | The hook_node_access function in the revisioning module 7.x-1.x before 7.x-1.3 for Drupal checks the permissions of the ... |
| CVE-2012-3539 | — | — | — | Aug 28, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-4681. Reason: This candidate is a duplicate of C... |
| CVE-2012-4680 | — | — | 2.7% | Aug 27, 2012 | Directory traversal vulnerability in the XML Server in IOServer before 1.0.19.0, when the Root Directory pathname lacks ... |
| CVE-2012-4036 | — | — | 2.6% | Aug 27, 2012 | Unrestricted file upload vulnerability in admin.php in PBBoard 2.1.4 allows remote administrators to execute arbitrary P... |
| CVE-2012-3467 | — | — | 6.4% | Aug 27, 2012 | Apache QPID 0.14, 0.16, and earlier uses a NullAuthenticator mechanism to authenticate catch-up shadow connections to AM... |
| CVE-2012-3421 | — | — | 3.3% | Aug 27, 2012 | The pduread function in pdu.c in libpcp in Performance Co-Pilot (PCP) before 3.6.5 does not properly time out connection... |
| CVE-2012-3420 | — | — | 2.4% | Aug 27, 2012 | Multiple memory leaks in Performance Co-Pilot (PCP) before 3.6.5 allow remote attackers to cause a denial of service (me... |
| CVE-2012-3419 | — | — | 1.8% | Aug 27, 2012 | Performance Co-Pilot (PCP) before 3.6.5 exports some of the /proc file system, which allows attackers to obtain sensitiv... |
| CVE-2012-3418 | — | — | 5.8% | Aug 27, 2012 | libpcp in Performance Co-Pilot (PCP) before 3.6.5 allows remote attackers to cause a denial of service and possibly exec... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now