2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2626 | — | — | 44.5% | Jul 31, 2012 | cgi-bin/admin.cgi in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 does not requir... |
| CVE-2012-2962 | — | — | 66.8% | Jul 30, 2012 | SQL injection vulnerability in d4d/statusFilter.php in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.2 ... |
| CVE-2012-2163 | — | — | 2.2% | Jul 30, 2012 | IBM Scale Out Network Attached Storage (SONAS) 1.1 through 1.3.1 allows remote authenticated administrators to execute a... |
| CVE-2012-0723 | — | — | 0.4% | Jul 30, 2012 | The kernel in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly implement the dupmsg system cal... |
| CVE-2012-1969 | — | — | 1.6% | Jul 30, 2012 | The get_attachment_link function in Template.pm in Bugzilla 2.x and 3.x before 3.6.10, 3.7.x and 4.0.x before 4.0.7, 4.1... |
| CVE-2012-1968 | — | — | 1.5% | Jul 30, 2012 | Bugzilla 4.1.x and 4.2.x before 4.2.2 and 4.3.x before 4.3.2 uses bug-editor privileges instead of bugmail-recipient pri... |
| CVE-2012-2978 | — | — | 9.2% | Jul 27, 2012 | query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a deni... |
| CVE-2012-2202 | — | — | 3.0% | Jul 27, 2012 | Directory traversal vulnerability in javatester_init.php in IBM Lotus Protector for Mail Security 2.1, 2.5, 2.5.1, and 2... |
| CVE-2012-3888 | — | — | 1.4% | Jul 26, 2012 | The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism ... |
| CVE-2012-3887 | — | — | 1.3% | Jul 26, 2012 | AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmis... |
| CVE-2012-3886 | — | — | 1.3% | Jul 26, 2012 | AirDroid 1.0.4 beta uses the MD5 algorithm for values in the checklogin key parameter and 7bb cookie, which makes it eas... |
| CVE-2012-3885 | — | — | 1.3% | Jul 26, 2012 | The default configuration of AirDroid 1.0.4 beta uses a four-character alphanumeric password, which makes it easier for ... |
| CVE-2012-3884 | — | — | 1.4% | Jul 26, 2012 | AirDroid 1.0.4 beta implements authentication through direct transmission of a password hash over HTTP, which makes it e... |
| CVE-2012-4068 | — | — | 4.5% | Jul 26, 2012 | Heap-based buffer overflow in the SoapServer service in Citrix Provisioning Services 5.0, 5.1, 5.6, 5.6 SP1, 6.0, and 6.... |
| CVE-2012-4043 | — | — | 1.4% | Jul 26, 2012 | Cross-site scripting (XSS) vulnerability in global-protect/login.esp in Palo Alto Networks Global Protect Portal, Global... |
| CVE-2012-3698 | — | — | 1.1% | Jul 26, 2012 | Apple Xcode before 4.4 does not properly compose a designated requirement (DR) during signing of programs that lack bund... |
| CVE-2012-3015 | — | — | 0.5% | Jul 26, 2012 | Untrusted search path vulnerability in Siemens SIMATIC STEP7 before 5.5 SP1, as used in SIMATIC PCS7 7.1 SP3 and earlier... |
| CVE-2012-3005 | — | — | 0.4% | Jul 26, 2012 | Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application S... |
| CVE-2012-4061 | — | — | 1.2% | Jul 25, 2012 | Multiple SQL injection vulnerabilities in ASP-DEv XM Diary allow remote attackers to execute arbitrary SQL commands via ... |
| CVE-2012-4060 | — | — | 1.1% | Jul 25, 2012 | Multiple SQL injection vulnerabilities in ASP-DEv XM Forums RC3 allow remote attackers to execute arbitrary SQL commands... |
| CVE-2012-4059 | — | — | 0.7% | Jul 25, 2012 | Cross-site request forgery (CSRF) vulnerability in home/secretqtn.php in SocketMail Pro 2.2.9 allows remote attackers to... |
| CVE-2012-4058 | — | — | 1.2% | Jul 25, 2012 | Cross-site scripting (XSS) vulnerability in SocketMail Pro 2.2.9 allows remote attackers to inject arbitrary web script ... |
| CVE-2012-4057 | — | — | 6.3% | Jul 25, 2012 | Buffer overflow in the Player in Remote-Anything 5.60.15 allows remote attackers to execute arbitrary code via a crafted... |
| CVE-2012-4056 | — | — | 1.3% | Jul 25, 2012 | SQL injection vulnerability in index2.php in Uiga Personal Portal allows remote attackers to execute arbitrary SQL comma... |
| CVE-2012-4055 | — | — | 1.1% | Jul 25, 2012 | SQL injection vulnerability in index2.php in Uiga Fan Club allows remote attackers to execute arbitrary SQL commands via... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now