2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4440MEDIUM6.1Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra...
CVE-2012-4439MEDIUM6.1Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra...
CVE-2012-4438HIGH8.8Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins mas...
CVE-2012-1170HIGH7.5Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough
CVE-2012-1169MEDIUM5.3Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first ...
CVE-2012-1161MEDIUM4.3Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
CVE-2012-1160LOW2.7Moodle before 2.2.2 has a permission issue in Forum Subscriptions where unenrolled users can subscribe/unsubscribe via m...
CVE-2012-1159MEDIUM4.3Moodle before 2.2.2: Overview report allows users to see hidden courses
CVE-2012-1158MEDIUM4.3Moodle before 2.2.2 has a course information leak in gradebook where users are able to see hidden grade items in export
CVE-2012-1157MEDIUM4.3Moodle before 2.2.2 has a default repository capabilities issue where all repositories are viewable by all users by defa...
CVE-2012-1168HIGH8.2Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is re...
CVE-2012-1156HIGH7.5Moodle before 2.2.2 has users' private files included in course backups
CVE-2012-1155HIGH7.5Moodle has a database activity export permission issue where the export function of the database activity module exports...
CVE-2012-5193MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 2.8.1 and earlier allow remote attackers to inject arbi...
CVE-2012-4385MEDIUM6.5letodms 3.3.6 has CSRF via change password
CVE-2012-4384MEDIUM6.1letodms has multiple XSS issues: Reflected XSS in Login Page, Stored XSS in Document Owner/User name, Stored XSS in Cale...
CVE-2012-1572HIGH7.5OpenStack Keystone: extremely long passwords can crash Keystone by exhausting stack space
CVE-2012-1109HIGH7.5mwlib 0.13 through 0.13.4 has a denial of service vulnerability when parsing #iferror magic functions
CVE-2012-0051HIGH7.4Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon re...
CVE-2012-0049MEDIUM4.3OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server.
CVE-2012-2979HIGH7.5FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of se...
CVE-2012-6125CRITICAL9.8Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to hash table collisions.
CVE-2012-6124MEDIUM5.3A casting error in Chicken before 4.8.0 on 64-bit platform caused the random number generator to return a constant value...
CVE-2012-6123MEDIUM6.5Chicken before 4.8.0 does not properly handle NUL bytes in certain strings, which allows an attacker to conduct "poisone...
CVE-2012-6122HIGH7.5Buffer overflow in the thread scheduler in Chicken before 4.8.0.1 allows attackers to cause a denial of service (crash) ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now