2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1876 | — | — | 65.0% | Jun 12, 2012 | Microsoft Internet Explorer 6 through 9, and 10 Consumer Preview, does not properly handle objects in memory, which allo... |
| CVE-2012-1875 | — | — | 61.7% | Jun 12, 2012 | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2012-1874 | — | — | 24.1% | Jun 12, 2012 | Microsoft Internet Explorer 8 and 9 does not properly handle objects in memory, which allows user-assisted remote attack... |
| CVE-2012-1873 | — | — | 18.3% | Jun 12, 2012 | Microsoft Internet Explorer 7 through 9 does not properly create and initialize string data, which allows remote attacke... |
| CVE-2012-1868 | — | — | 1.2% | Jun 12, 2012 | Race condition in the thread-creation implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP... |
| CVE-2012-1866 | — | — | 1.7% | Jun 12, 2012 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2012-1865 | — | — | 1.6% | Jun 12, 2012 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2012-1864 | — | — | 1.6% | Jun 12, 2012 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2012-1858 | — | — | 22.0% | Jun 12, 2012 | The toStaticHTML API (aka the SafeHTML component) in Microsoft Internet Explorer 8 and 9, Communicator 2007 R2, and Lync... |
| CVE-2012-1857 | — | — | 11.0% | Jun 12, 2012 | Cross-site scripting (XSS) vulnerability in the Enterprise Portal component in Microsoft Dynamics AX 2012 allows remote ... |
| CVE-2012-1855 | — | — | 20.5% | Jun 12, 2012 | Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly handle function pointers, which allows remote... |
| CVE-2012-1849 | — | — | 18.4% | Jun 12, 2012 | Untrusted search path vulnerability in Microsoft Lync 2010, 2010 Attendee, and 2010 Attendant allows local users to gain... |
| CVE-2012-1523 | — | — | 22.5% | Jun 12, 2012 | Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2012-0217 | — | — | 37.5% | Jun 12, 2012 | The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and ... |
| CVE-2012-0173 | — | — | 20.9% | Jun 12, 2012 | The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V... |
| CVE-2012-0677 | — | — | 15.4% | Jun 12, 2012 | Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a de... |
| CVE-2012-2959 | — | — | 1.2% | Jun 11, 2012 | Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite ... |
| CVE-2012-1825 | — | — | 1.0% | Jun 11, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the status program on the ForeScout CounterACT appliance with sof... |
| CVE-2012-3343 | — | — | 0.6% | Jun 9, 2012 | Cross-site request forgery (CSRF) vulnerability in Microdasys before 3.5.1-B708, as used in Bloxx Web Filtering before 5... |
| CVE-2012-2566 | — | — | 2.1% | Jun 9, 2012 | Bloxx Web Filtering before 5.0.14 does not properly interpret X-Forwarded-For headers during access-control and logging ... |
| CVE-2012-2565 | — | — | 1.2% | Jun 9, 2012 | Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for c... |
| CVE-2012-2564 | — | — | 0.8% | Jun 9, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before... |
| CVE-2012-2563 | — | — | 1.3% | Jun 9, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Bloxx Web Filtering before 5.0.14 allow (1) remote attackers to i... |
| CVE-2012-2040 | — | — | 4.0% | Jun 9, 2012 | Untrusted search path vulnerability in the installer in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.2... |
| CVE-2012-2039 | — | — | 4.7% | Jun 9, 2012 | Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now