2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1370 | — | — | 1.1% | Aug 6, 2012 | Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 allows remote authenticated users to cause a denial of serv... |
| CVE-2012-1367 | — | — | 1.8% | Aug 6, 2012 | The MallocLite implementation in Cisco IOS 12.0, 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of... |
| CVE-2012-1365 | — | — | 1.0% | Aug 6, 2012 | Cisco Unified Computing System (UCS) 1.4 and 2.0 allows remote authenticated users to cause a denial of service (device ... |
| CVE-2012-1364 | — | — | 1.0% | Aug 6, 2012 | Cisco Unified Computing System (UCS) 1.4 and 2.0 allows remote authenticated users to cause a denial of service (device ... |
| CVE-2012-3444 | — | — | 1.8% | Jul 31, 2012 | The get_image_dimensions function in the image-handling functionality in Django before 1.3.2 and 1.4.x before 1.4.1 uses... |
| CVE-2012-3443 | — | — | 2.6% | Jul 31, 2012 | The django.forms.ImageField class in the form system in Django before 1.3.2 and 1.4.x before 1.4.1 completely decompress... |
| CVE-2012-3442 | — | — | 2.1% | Jul 31, 2012 | The (1) django.http.HttpResponseRedirect and (2) django.http.HttpResponsePermanentRedirect classes in Django before 1.3.... |
| CVE-2012-3951 | — | — | 52.9% | Jul 31, 2012 | The MySQL component in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) 9.0.1.19899 and earlier has a default passwor... |
| CVE-2012-3848 | — | — | 2.5% | Jul 31, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutin... |
| CVE-2012-3426 | — | — | 2.3% | Jul 31, 2012 | OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly i... |
| CVE-2012-3018 | — | — | 0.2% | Jul 31, 2012 | The lockout-recovery feature in the Security Configurator component in ICONICS GENESIS32 9.22 and earlier and BizViz 9.2... |
| CVE-2012-3017 | — | — | 3.5% | Jul 31, 2012 | Siemens SIMATIC S7-400 PN CPU devices with firmware 5.x allow remote attackers to cause a denial of service (defect-mode... |
| CVE-2012-3016 | — | — | 3.5% | Jul 31, 2012 | Siemens SIMATIC S7-400 PN CPU devices with firmware 6 before 6.0.3 allow remote attackers to cause a denial of service (... |
| CVE-2012-2647 | — | — | 1.3% | Jul 31, 2012 | Yahoo! Toolbar 1.0.0.5 and earlier for Chrome and Safari allows remote attackers to modify the configured search URL, an... |
| CVE-2012-2627 | — | — | 5.7% | Jul 31, 2012 | d4d/uploader.php in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 allows remote at... |
| CVE-2012-2626 | — | — | 44.5% | Jul 31, 2012 | cgi-bin/admin.cgi in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 does not requir... |
| CVE-2012-2962 | — | — | 66.8% | Jul 30, 2012 | SQL injection vulnerability in d4d/statusFilter.php in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.2 ... |
| CVE-2012-2163 | — | — | 2.2% | Jul 30, 2012 | IBM Scale Out Network Attached Storage (SONAS) 1.1 through 1.3.1 allows remote authenticated administrators to execute a... |
| CVE-2012-0723 | — | — | 0.4% | Jul 30, 2012 | The kernel in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly implement the dupmsg system cal... |
| CVE-2012-1969 | — | — | 1.6% | Jul 30, 2012 | The get_attachment_link function in Template.pm in Bugzilla 2.x and 3.x before 3.6.10, 3.7.x and 4.0.x before 4.0.7, 4.1... |
| CVE-2012-1968 | — | — | 1.5% | Jul 30, 2012 | Bugzilla 4.1.x and 4.2.x before 4.2.2 and 4.3.x before 4.3.2 uses bug-editor privileges instead of bugmail-recipient pri... |
| CVE-2012-2978 | — | — | 9.2% | Jul 27, 2012 | query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a deni... |
| CVE-2012-2202 | — | — | 3.0% | Jul 27, 2012 | Directory traversal vulnerability in javatester_init.php in IBM Lotus Protector for Mail Security 2.1, 2.5, 2.5.1, and 2... |
| CVE-2012-3888 | — | — | 1.4% | Jul 26, 2012 | The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism ... |
| CVE-2012-3887 | — | — | 1.3% | Jul 26, 2012 | AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmis... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now