2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-2709Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-2907. Reason: This candidate is a duplicate of...
CVE-2012-2698Cross-site scripting (XSS) vulnerability in the outputPage function in includes/SkinTemplate.php in MediaWiki before 1.1...
CVE-2012-2690virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file wi...
CVE-2012-2664The sosreport utility in the Red Hat sos package before 2.2-29 does not remove the root user password information from t...
CVE-2012-2385The terminal dispatcher in mosh before 1.2.1 allows remote authenticated users to cause a denial of service (long loop a...
CVE-2012-2098Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream)...
CVE-2012-1164slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion failure and daemon exit)...
CVE-2012-1123The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to ...
CVE-2012-1122bug_actiongroup.php in MantisBT before 1.2.9 does not properly check the report_bug_threshold permission of the receivin...
CVE-2012-1121MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileg...
CVE-2012-1120The SOAP API in MantisBT before 1.2.9 does not properly enforce the bugnote_allow_user_edit_delete and delete_bug_thresh...
CVE-2012-1119MantisBT before 1.2.9 does not audit when users copy or clone a bug report, which makes it easier for remote attackers t...
CVE-2012-1118The access_has_bug_level function in core/access_api.php in MantisBT before 1.2.9 does not properly restrict access when...
CVE-2012-0813Wicd before 1.7.1 saves sensitive information in log files in /var/log/wicd, which allows context-dependent attackers to...
CVE-2012-3818The fpm exporter in Revelation 0.4.13-2 and earlier encrypts the version number but not the password when exporting a fi...
CVE-2012-3232Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote ...
CVE-2012-3057Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21...
CVE-2012-3056Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 ...
CVE-2012-3055Stack-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP2...
CVE-2012-3054Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21...
CVE-2012-3053Buffer overflow in the Cisco WebEx Advanced Recording Format (ARF) player T27 L through SP11 EP26, T27 LB through SP21 E...
CVE-2012-3231Multiple cross-site request forgery (CSRF) vulnerabilities in web@all 2.0, as downloaded before May 30, 2012, allow remo...
CVE-2012-2743Revelation 0.4.13-2 and earlier does not iterate through SHA hashing algorithms for AES encryption, which makes it easie...
CVE-2012-2742Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which r...
CVE-2012-3816WinRadius Server 2009 allows remote attackers to cause a denial of service (crash) via a long password in an Access-Requ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now