2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4045 | — | — | 3.1% | Jul 22, 2012 | Multiple heap-based buffer overflows in bmp.w5s in Winamp before 5.63 build 3235 allow remote attackers to execute arbit... |
| CVE-2012-3385 | — | — | 1.9% | Jul 22, 2012 | WordPress before 3.4.1 does not properly restrict access to post contents such as private or draft posts, which allows r... |
| CVE-2012-3384 | — | — | 1.2% | Jul 22, 2012 | Cross-site request forgery (CSRF) vulnerability in the customizer in WordPress before 3.4.1 allows remote attackers to h... |
| CVE-2012-3383 | — | — | 3.1% | Jul 22, 2012 | The map_meta_cap function in wp-includes/capabilities.php in WordPress 3.4.x before 3.4.2, when the multisite feature is... |
| CVE-2012-2737 | — | — | 0.4% | Jul 22, 2012 | The user_change_icon_file_authorized_cb function in /usr/libexec/accounts-daemon in AccountsService before 0.6.22 does n... |
| CVE-2012-2113 | — | — | 5.5% | Jul 22, 2012 | Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (appl... |
| CVE-2012-2088 | — | — | 6.5% | Jul 22, 2012 | Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote a... |
| CVE-2012-3361 | — | — | 2.6% | Jul 22, 2012 | virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenti... |
| CVE-2012-3360 | — | — | 3.0% | Jul 22, 2012 | Directory traversal vulnerability in virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), wh... |
| CVE-2012-3357 | — | — | 1.9% | Jul 22, 2012 | The SVN revision view (lib/vclib/svn/svn_repos.py) in ViewVC before 1.1.15 does not properly handle log messages when a ... |
| CVE-2012-3356 | — | — | 2.0% | Jul 22, 2012 | The remote SVN views functionality (lib/vclib/svn/svn_ra.py) in ViewVC before 1.1.15 does not properly perform authoriza... |
| CVE-2012-2751 | — | — | 3.3% | Jul 22, 2012 | ModSecurity before 2.6.6, when used with PHP, does not properly handle single quotes not at the beginning of a request p... |
| CVE-2012-2738 | — | — | 11.2% | Jul 22, 2012 | The VteTerminal in gnome-terminal (vte) before 0.32.2 allows remote authenticated users to cause a denial of service (lo... |
| CVE-2012-2367 | — | — | 1.7% | Jul 21, 2012 | Moodle 1.9.x before 1.9.18, 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated u... |
| CVE-2012-2366 | — | — | 1.4% | Jul 21, 2012 | mod/data/preset.php in Moodle 2.1.x before 2.1.6 and 2.2.x before 2.2.3 does not properly iterate through an array, whic... |
| CVE-2012-2365 | — | — | 1.4% | Jul 21, 2012 | Cross-site scripting (XSS) vulnerability in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows... |
| CVE-2012-2364 | — | — | 0.8% | Jul 21, 2012 | Cross-site scripting (XSS) vulnerability in lib/filelib.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x ... |
| CVE-2012-2363 | — | — | 1.4% | Jul 21, 2012 | SQL injection vulnerability in calendar/event.php in the calendar implementation in Moodle 1.9.x before 1.9.18 allows re... |
| CVE-2012-2362 | — | — | 1.2% | Jul 21, 2012 | Cross-site scripting (XSS) vulnerability in blog/lib.php in the blog implementation in Moodle 1.9.x before 1.9.18, when ... |
| CVE-2012-2361 | — | — | 1.1% | Jul 21, 2012 | Cross-site scripting (XSS) vulnerability in admin/webservice/forms.php in the web services implementation in Moodle 2.0.... |
| CVE-2012-2360 | — | — | 0.8% | Jul 21, 2012 | Cross-site scripting (XSS) vulnerability in the Wiki subsystem in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2... |
| CVE-2012-2359 | — | — | 1.1% | Jul 21, 2012 | admin/roles/override.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenti... |
| CVE-2012-2358 | — | — | 1.6% | Jul 21, 2012 | Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to bypass an act... |
| CVE-2012-2357 | — | — | 1.3% | Jul 21, 2012 | The Multi-Authentication feature in the Central Authentication Service (CAS) functionality in auth/cas/cas_form.html in ... |
| CVE-2012-2356 | — | — | 1.4% | Jul 21, 2012 | The question-bank functionality in Moodle 2.1.x before 2.1.6 and 2.2.x before 2.2.3 allows remote authenticated users to... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now