2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-1876Microsoft Internet Explorer 6 through 9, and 10 Consumer Preview, does not properly handle objects in memory, which allo...
CVE-2012-1875Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbit...
CVE-2012-1874Microsoft Internet Explorer 8 and 9 does not properly handle objects in memory, which allows user-assisted remote attack...
CVE-2012-1873Microsoft Internet Explorer 7 through 9 does not properly create and initialize string data, which allows remote attacke...
CVE-2012-1868Race condition in the thread-creation implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP...
CVE-2012-1866win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W...
CVE-2012-1865win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W...
CVE-2012-1864win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W...
CVE-2012-1858The toStaticHTML API (aka the SafeHTML component) in Microsoft Internet Explorer 8 and 9, Communicator 2007 R2, and Lync...
CVE-2012-1857Cross-site scripting (XSS) vulnerability in the Enterprise Portal component in Microsoft Dynamics AX 2012 allows remote ...
CVE-2012-1855Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly handle function pointers, which allows remote...
CVE-2012-1849Untrusted search path vulnerability in Microsoft Lync 2010, 2010 Attendee, and 2010 Attendant allows local users to gain...
CVE-2012-1523Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to exe...
CVE-2012-0217The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and ...
CVE-2012-0173The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V...
CVE-2012-0677Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a de...
CVE-2012-2959Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite ...
CVE-2012-1825Multiple cross-site scripting (XSS) vulnerabilities in the status program on the ForeScout CounterACT appliance with sof...
CVE-2012-3343Cross-site request forgery (CSRF) vulnerability in Microdasys before 3.5.1-B708, as used in Bloxx Web Filtering before 5...
CVE-2012-2566Bloxx Web Filtering before 5.0.14 does not properly interpret X-Forwarded-For headers during access-control and logging ...
CVE-2012-2565Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for c...
CVE-2012-2564Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before...
CVE-2012-2563Multiple cross-site scripting (XSS) vulnerabilities in Bloxx Web Filtering before 5.0.14 allow (1) remote attackers to i...
CVE-2012-2040Untrusted search path vulnerability in the installer in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.2...
CVE-2012-2039Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now