2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4053 | — | — | 0.6% | Jul 25, 2012 | Cross-site request forgery (CSRF) vulnerability in eZOE flash player in eZ Publish 4.1 through 4.6 allows remote attacke... |
| CVE-2012-3697 | — | — | 1.8% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 does not properly handle file: URLs, which allows remote attackers to bypass intended ... |
| CVE-2012-3696 | — | — | 0.9% | Jul 25, 2012 | CRLF injection vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrary HTTP heade... |
| CVE-2012-3695 | — | — | 1.1% | Jul 25, 2012 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrar... |
| CVE-2012-3694 | — | — | 0.9% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac... |
| CVE-2012-3693 | — | — | 1.2% | Jul 25, 2012 | Incomplete blacklist vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to spoof domain names in... |
| CVE-2012-3691 | — | — | 0.9% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 does not properly handle Cascading Style Sheets (CSS) property values, which allows re... |
| CVE-2012-3690 | — | — | 0.9% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac... |
| CVE-2012-3689 | — | — | 1.3% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac... |
| CVE-2012-3650 | — | — | 0.9% | Jul 25, 2012 | WebKit in Apple Safari before 6.0 accesses uninitialized memory locations during the rendering of SVG images, which allo... |
| CVE-2012-2760 | — | — | 1.0% | Jul 25, 2012 | mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local us... |
| CVE-2012-2677 | — | — | 3.9% | Jul 25, 2012 | Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for cont... |
| CVE-2012-2676 | — | — | 1.1% | Jul 25, 2012 | Multiple integer overflows in the (1) malloc and (2) calloc functions in Hoard before 3.9 make it easier for context-dep... |
| CVE-2012-2675 | — | — | 1.3% | Jul 25, 2012 | Multiple integer overflows in the (1) CallMalloc (malloc) and (2) nedpcalloc (calloc) functions in nedmalloc (nedmalloc.... |
| CVE-2012-2674 | — | — | 0.8% | Jul 25, 2012 | Multiple integer overflows in the (1) chk_malloc, (2) leak_malloc, and (3) leak_memalign functions in libc/bionic/malloc... |
| CVE-2012-2673 | — | — | 2.8% | Jul 25, 2012 | Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_mal... |
| CVE-2012-0680 | — | — | 2.0% | Jul 25, 2012 | Apple Safari before 6.0 does not properly handle the autocomplete attribute of a password input element, which allows re... |
| CVE-2012-0679 | — | — | 1.5% | Jul 25, 2012 | Apple Safari before 6.0 allows remote attackers to read arbitrary files via a feed:// URL. |
| CVE-2012-0678 | — | — | 0.9% | Jul 25, 2012 | Cross-site scripting (XSS) vulnerability in Apple Safari before 6.0 allows remote attackers to inject arbitrary web scri... |
| CVE-2012-3954 | — | — | 4.3% | Jul 25, 2012 | Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers t... |
| CVE-2012-3868 | — | — | 2.7% | Jul 25, 2012 | Race condition in the ns_client structure management in ISC BIND 9.9.x before 9.9.1-P2 allows remote attackers to cause ... |
| CVE-2012-3817 | — | — | 27.4% | Jul 25, 2012 | ISC BIND 9.4.x, 9.5.x, 9.6.x, and 9.7.x before 9.7.6-P2; 9.8.x before 9.8.3-P2; 9.9.x before 9.9.1-P2; and 9.6-ESV befor... |
| CVE-2012-3571 | — | — | 13.0% | Jul 25, 2012 | ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinit... |
| CVE-2012-3570 | — | — | 2.6% | Jul 25, 2012 | Buffer overflow in ISC DHCP 4.2.x before 4.2.4-P1, when DHCPv6 mode is enabled, allows remote attackers to cause a denia... |
| CVE-2012-2646 | — | — | 1.9% | Jul 25, 2012 | The Sleipnir Mobile application before 2.1.0 and Sleipnir Mobile Black Edition application before 2.1.0 for Android do n... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now