2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4266 | — | — | 1.6% | Aug 13, 2012 | Cross-site scripting (XSS) vulnerability in client_details.php in Proman Xpress 5.0.1 allows remote attackers to inject ... |
| CVE-2012-4265 | — | — | 1.0% | Aug 13, 2012 | SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote attackers to execute arbitrary SQL... |
| CVE-2012-4264 | — | — | 1.7% | Aug 13, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Better WP Security (better_wp_security) plugin before 3.2.5 f... |
| CVE-2012-4263 | — | — | 2.1% | Aug 13, 2012 | Cross-site scripting (XSS) vulnerability in inc/admin/content.php in the Better WP Security (better_wp_security) plugin ... |
| CVE-2012-3869 | — | — | 1.2% | Aug 13, 2012 | Cross-site scripting (XSS) vulnerability in include/classes/class.rex_list.inc.php in REDAXO 4.3.x and 4.4 allows remote... |
| CVE-2012-3425 | — | — | 3.4% | Aug 13, 2012 | The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, a... |
| CVE-2012-3417 | — | — | 3.1% | Aug 13, 2012 | The good_client function in rquotad (rquota_svc.c) in Linux DiskQuota (aka quota) before 3.17 invokes the hosts_ctl func... |
| CVE-2012-3401 | — | — | 4.1% | Aug 13, 2012 | The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize... |
| CVE-2012-3367 | — | — | 1.2% | Aug 13, 2012 | Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System does not properly check certificate revocat... |
| CVE-2012-2806 | HIGH | 8.8 | 4.8% | Aug 13, 2012 | Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause... |
| CVE-2012-2662 | — | — | 1.4% | Aug 13, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certifi... |
| CVE-2012-2371 | — | — | 12.9% | Aug 13, 2012 | Cross-site scripting (XSS) vulnerability in index.php in the WP-FaceThumb plugin 0.1 for WordPress allows remote attacke... |
| CVE-2012-2370 | — | — | 4.1% | Aug 13, 2012 | Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote at... |
| CVE-2012-2368 | — | — | 1.5% | Aug 13, 2012 | Bytemark Symbiosis before Revision 1322 does not properly validate passwords, which allows remote attackers to gain acce... |
| CVE-2012-4262 | — | — | 2.4% | Aug 13, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in myCare2x allow remote attackers to inject arbitrary web script or... |
| CVE-2012-4261 | — | — | 1.1% | Aug 13, 2012 | SQL injection vulnerability in modules/patient/mycare2x_pat_info.php in myCare2x allows remote attackers to execute arbi... |
| CVE-2012-4260 | — | — | 1.7% | Aug 13, 2012 | Multiple SQL injection vulnerabilities in myCare2x allow remote attackers to execute arbitrary SQL commands via the (1) ... |
| CVE-2012-4259 | — | — | 1.9% | Aug 13, 2012 | Cross-site scripting (XSS) vulnerability in the contacts in (1) XPhone UC Web and the (2) web frontend for XPhone Virtua... |
| CVE-2012-4258 | — | — | 1.1% | Aug 13, 2012 | Multiple SQL injection vulnerabilities in MYRE Real Estate Software (2012 Q2) allow remote attackers to execute arbitrar... |
| CVE-2012-4257 | — | — | 1.5% | Aug 13, 2012 | Yaqas (Yet Another Question & Answer System) 1.0 Alpha 1 allows remote attackers to obtain sensitive information via an ... |
| CVE-2012-4256 | — | — | 1.5% | Aug 13, 2012 | The jNews (com_jnews) component 7.5.1 for Joomla! allows remote attackers to obtain sensitive information via the emails... |
| CVE-2012-4255 | — | — | 1.3% | Aug 13, 2012 | MySQLDumper 1.24.4 allows remote attackers to obtain sensitive information via a direct request to learn/cubemail/refres... |
| CVE-2012-4254 | — | — | 2.4% | Aug 13, 2012 | MySQLDumper 1.24.4 allows remote attackers to obtain sensitive information (Notices) via a direct request to (1) learn/c... |
| CVE-2012-4253 | — | — | 8.5% | Aug 13, 2012 | Multiple directory traversal vulnerabilities in MySQLDumper 1.24.4 allow remote attackers to read arbitrary files via a ... |
| CVE-2012-4252 | — | — | 1.1% | Aug 13, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in MySQLDumper 1.24.4 allow remote attackers to hijack the au... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now