2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2709 | — | — | — | Jun 29, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-2907. Reason: This candidate is a duplicate of... |
| CVE-2012-2698 | — | — | 4.9% | Jun 29, 2012 | Cross-site scripting (XSS) vulnerability in the outputPage function in includes/SkinTemplate.php in MediaWiki before 1.1... |
| CVE-2012-2690 | — | — | 0.4% | Jun 29, 2012 | virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file wi... |
| CVE-2012-2664 | — | — | 1.4% | Jun 29, 2012 | The sosreport utility in the Red Hat sos package before 2.2-29 does not remove the root user password information from t... |
| CVE-2012-2385 | — | — | 10.9% | Jun 29, 2012 | The terminal dispatcher in mosh before 1.2.1 allows remote authenticated users to cause a denial of service (long loop a... |
| CVE-2012-2098 | — | — | 12.6% | Jun 29, 2012 | Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream)... |
| CVE-2012-1164 | — | — | 3.7% | Jun 29, 2012 | slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion failure and daemon exit)... |
| CVE-2012-1123 | — | — | 3.7% | Jun 29, 2012 | The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to ... |
| CVE-2012-1122 | — | — | 2.4% | Jun 29, 2012 | bug_actiongroup.php in MantisBT before 1.2.9 does not properly check the report_bug_threshold permission of the receivin... |
| CVE-2012-1121 | — | — | 2.2% | Jun 29, 2012 | MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileg... |
| CVE-2012-1120 | — | — | 2.3% | Jun 29, 2012 | The SOAP API in MantisBT before 1.2.9 does not properly enforce the bugnote_allow_user_edit_delete and delete_bug_thresh... |
| CVE-2012-1119 | — | — | 3.7% | Jun 29, 2012 | MantisBT before 1.2.9 does not audit when users copy or clone a bug report, which makes it easier for remote attackers t... |
| CVE-2012-1118 | — | — | 3.1% | Jun 29, 2012 | The access_has_bug_level function in core/access_api.php in MantisBT before 1.2.9 does not properly restrict access when... |
| CVE-2012-0813 | — | — | 0.4% | Jun 29, 2012 | Wicd before 1.7.1 saves sensitive information in log files in /var/log/wicd, which allows context-dependent attackers to... |
| CVE-2012-3818 | — | — | 0.3% | Jun 29, 2012 | The fpm exporter in Revelation 0.4.13-2 and earlier encrypts the version number but not the password when exporting a fi... |
| CVE-2012-3232 | — | — | 1.3% | Jun 29, 2012 | Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote ... |
| CVE-2012-3057 | — | — | 3.2% | Jun 29, 2012 | Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21... |
| CVE-2012-3056 | — | — | 3.1% | Jun 29, 2012 | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 ... |
| CVE-2012-3055 | — | — | 3.2% | Jun 29, 2012 | Stack-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP2... |
| CVE-2012-3054 | — | — | 3.9% | Jun 29, 2012 | Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21... |
| CVE-2012-3053 | — | — | 3.2% | Jun 29, 2012 | Buffer overflow in the Cisco WebEx Advanced Recording Format (ARF) player T27 L through SP11 EP26, T27 LB through SP21 E... |
| CVE-2012-3231 | — | — | 1.5% | Jun 27, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in web@all 2.0, as downloaded before May 30, 2012, allow remo... |
| CVE-2012-2743 | — | — | 1.1% | Jun 27, 2012 | Revelation 0.4.13-2 and earlier does not iterate through SHA hashing algorithms for AES encryption, which makes it easie... |
| CVE-2012-2742 | — | — | 1.8% | Jun 27, 2012 | Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which r... |
| CVE-2012-3816 | — | — | 8.0% | Jun 27, 2012 | WinRadius Server 2009 allows remote attackers to cause a denial of service (crash) via a long password in an Access-Requ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now