2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-3487 | — | — | 0.1% | Aug 26, 2012 | Race condition in Tunnelblick 3.3beta20 and earlier allows local users to kill unintended processes by waiting for a spe... |
| CVE-2012-3486 | — | — | 0.3% | Aug 26, 2012 | Tunnelblick 3.3beta20 and earlier allows local users to gain privileges via an OpenVPN configuration file that specifies... |
| CVE-2012-3485 | — | — | 3.8% | Aug 26, 2012 | Tunnelblick 3.3beta20 and earlier relies on argv[0] to determine the name of an appropriate (1) kernel module pathname o... |
| CVE-2012-3484 | — | — | 0.2% | Aug 26, 2012 | Tunnelblick 3.3beta20 and earlier relies on a test for specific ownership and permissions to determine whether a program... |
| CVE-2012-3483 | — | — | 0.3% | Aug 26, 2012 | Race condition in the runScript function in Tunnelblick 3.3beta20 and earlier allows local users to gain privileges by r... |
| CVE-2012-4675 | — | — | 1.2% | Aug 26, 2012 | Cross-site scripting (XSS) vulnerability in PluXml 5.1.6 allows remote attackers to inject arbitrary web script or HTML ... |
| CVE-2012-4674 | — | — | 1.2% | Aug 26, 2012 | PluXml before 5.1.6 allows remote attackers to obtain the installation path via the PHPSESSID. |
| CVE-2012-2227 | — | — | 9.8% | Aug 26, 2012 | Directory traversal vulnerability in update/index.php in PluXml before 5.1.6 allows remote attackers to include and exec... |
| CVE-2012-4673 | — | — | 1.3% | Aug 26, 2012 | SQL injection vulnerability in application/controllers/invoice.php in NeoInvoice might allow remote attackers to execute... |
| CVE-2012-3519 | — | — | 2.4% | Aug 26, 2012 | routerlist.c in Tor before 0.2.2.38 uses a different amount of time for relay-list iteration depending on which relay is... |
| CVE-2012-3518 | — | — | 2.8% | Aug 26, 2012 | The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an in... |
| CVE-2012-3517 | — | — | 2.8% | Aug 26, 2012 | Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might allow remote attackers to cause a denial of service (... |
| CVE-2012-3477 | — | — | 1.2% | Aug 26, 2012 | SQL injection vulnerability in signup_check.php in NeoInvoice allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2012-2289 | — | — | 5.4% | Aug 26, 2012 | EMC ApplicationXtender Desktop before 6.5 SP2 and ApplicationXtender Web Access .NET before 6.5 SP2 allow remote attacke... |
| CVE-2012-4672 | — | — | 0.8% | Aug 25, 2012 | Apple iChat Server does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMP... |
| CVE-2012-4671 | — | — | 0.9% | Aug 25, 2012 | psyced before 20120821 does not verify that a request was made for an XMPP Server Dialback response, which allows remote... |
| CVE-2012-4670 | — | — | 1.3% | Aug 25, 2012 | Tigase XMPP Server before 5.1.0 does not verify that a request was made for an XMPP Server Dialback response, which allo... |
| CVE-2012-4669 | — | — | 0.9% | Aug 25, 2012 | M-Link R14.6 before R14.6v14 and R15.1 before R15.1v10 does not verify that a request was made for an XMPP Server Dialba... |
| CVE-2012-3525 | — | — | 1.7% | Aug 25, 2012 | s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, w... |
| CVE-2012-4668 | — | — | 3.7% | Aug 25, 2012 | Cross-site scripting (XSS) vulnerability in Roundcube Webmail 0.8.1 and earlier allows remote attackers to inject arbitr... |
| CVE-2012-4667 | — | — | 1.8% | Aug 25, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in SquidClamav 5.x before 5.8 allow remote attackers to inject arbit... |
| CVE-2012-3514 | — | — | 1.5% | Aug 25, 2012 | OCaml Xml-Light Library before r234 computes hash values without restricting the ability to trigger hash collisions pred... |
| CVE-2012-3508 | — | — | 4.2% | Aug 25, 2012 | Cross-site scripting (XSS) vulnerability in program/lib/washtml.php in Roundcube Webmail 0.8.0 allows remote attackers t... |
| CVE-2012-3507 | — | — | 2.1% | Aug 25, 2012 | Cross-site scripting (XSS) vulnerability in program/steps/mail/func.inc in RoundCube Webmail before 0.8.0, when using th... |
| CVE-2012-3501 | — | — | 3.3% | Aug 25, 2012 | The squidclamav_check_preview_handler function in squidclamav.c in SquidClamav 5.x before 5.8 and 6.x before 6.7 passes ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now