2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4053Cross-site request forgery (CSRF) vulnerability in eZOE flash player in eZ Publish 4.1 through 4.6 allows remote attacke...
CVE-2012-3697WebKit in Apple Safari before 6.0 does not properly handle file: URLs, which allows remote attackers to bypass intended ...
CVE-2012-3696CRLF injection vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrary HTTP heade...
CVE-2012-3695Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrar...
CVE-2012-3694WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac...
CVE-2012-3693Incomplete blacklist vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to spoof domain names in...
CVE-2012-3691WebKit in Apple Safari before 6.0 does not properly handle Cascading Style Sheets (CSS) property values, which allows re...
CVE-2012-3690WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac...
CVE-2012-3689WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attac...
CVE-2012-3650WebKit in Apple Safari before 6.0 accesses uninitialized memory locations during the rendering of SVG images, which allo...
CVE-2012-2760mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local us...
CVE-2012-2677Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for cont...
CVE-2012-2676Multiple integer overflows in the (1) malloc and (2) calloc functions in Hoard before 3.9 make it easier for context-dep...
CVE-2012-2675Multiple integer overflows in the (1) CallMalloc (malloc) and (2) nedpcalloc (calloc) functions in nedmalloc (nedmalloc....
CVE-2012-2674Multiple integer overflows in the (1) chk_malloc, (2) leak_malloc, and (3) leak_memalign functions in libc/bionic/malloc...
CVE-2012-2673Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_mal...
CVE-2012-0680Apple Safari before 6.0 does not properly handle the autocomplete attribute of a password input element, which allows re...
CVE-2012-0679Apple Safari before 6.0 allows remote attackers to read arbitrary files via a feed:// URL.
CVE-2012-0678Cross-site scripting (XSS) vulnerability in Apple Safari before 6.0 allows remote attackers to inject arbitrary web scri...
CVE-2012-3954Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers t...
CVE-2012-3868Race condition in the ns_client structure management in ISC BIND 9.9.x before 9.9.1-P2 allows remote attackers to cause ...
CVE-2012-3817ISC BIND 9.4.x, 9.5.x, 9.6.x, and 9.7.x before 9.7.6-P2; 9.8.x before 9.8.3-P2; 9.9.x before 9.9.1-P2; and 9.6-ESV befor...
CVE-2012-3571ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinit...
CVE-2012-3570Buffer overflow in ISC DHCP 4.2.x before 4.2.4-P1, when DHCPv6 mode is enabled, allows remote attackers to cause a denia...
CVE-2012-2646The Sleipnir Mobile application before 2.1.0 and Sleipnir Mobile Black Edition application before 2.1.0 for Android do n...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now