2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1861 | — | — | 15.4% | Jul 10, 2012 | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 Gold and SP1, SharePoint Foundation 2010 Go... |
| CVE-2012-1860 | — | — | 13.0% | Jul 10, 2012 | Microsoft Office SharePoint Server 2007 SP2 and SP3, SharePoint Server 2010 Gold and SP1, and Office Web Apps 2010 Gold ... |
| CVE-2012-1859 | — | — | 23.1% | Jul 10, 2012 | Cross-site scripting (XSS) vulnerability in scriptresx.ashx in Microsoft SharePoint Server 2010 Gold and SP1, SharePoint... |
| CVE-2012-1854 | HIGH | 7.8 | 21.0% | Jul 10, 2012 | Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; M... |
| CVE-2012-1524 | — | — | 20.9% | Jul 10, 2012 | Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2012-1522 | — | — | 20.9% | Jul 10, 2012 | Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2012-0175 | HIGH | 8.8 | 26.2% | Jul 10, 2012 | The Shell in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, ... |
| CVE-2012-3812 | — | — | 3.2% | Jul 9, 2012 | Double free vulnerability in apps/app_voicemail.c in Asterisk Open Source 1.8.x before 1.8.13.1 and 10.x before 10.5.2, ... |
| CVE-2012-3238 | — | — | 3.5% | Jul 9, 2012 | Cross-site scripting (XSS) vulnerability in the Backup/Restore component in WebAdmin in Astaro Security Gateway before 8... |
| CVE-2012-2970 | — | — | 1.5% | Jul 9, 2012 | The Synel SY-780/A Time & Attendance terminal allows remote attackers to cause a denial of service (device hang) via net... |
| CVE-2012-2138 | — | — | 14.1% | Jul 9, 2012 | The @CopyFrom operation in the POST servlet in the org.apache.sling.servlets.post bundle before 2.1.2 in Apache Sling do... |
| CVE-2012-1493 | — | — | 63.1% | Jul 9, 2012 | F5 BIG-IP appliances 9.x before 9.4.8-HF5, 10.x before 10.2.4, 11.0.x before 11.0.0-HF2, and 11.1.x before 11.1.0-HF3, a... |
| CVE-2012-3859 | — | — | 2.9% | Jul 9, 2012 | Unspecified vulnerability in the WebAdmin Portal in Netsweeper has unknown impact and attack vectors, a different vulner... |
| CVE-2012-2447 | — | — | 0.7% | Jul 9, 2012 | Cross-site request forgery (CSRF) vulnerability in accountmgr/adminupdate.php in the WebAdmin Portal in Netsweeper allow... |
| CVE-2012-2446 | — | — | 1.1% | Jul 9, 2012 | Cross-site scripting (XSS) vulnerability in tools/local_lookup.php in the WebAdmin Portal in Netsweeper allows remote at... |
| CVE-2012-3863 | — | — | 3.2% | Jul 9, 2012 | channels/chan_sip.c in Asterisk Open Source 1.8.x before 1.8.13.1 and 10.x before 10.5.2, Asterisk Business Edition C.3.... |
| CVE-2012-3372 | HIGH | 7.4 | 0.9% | Jul 9, 2012 | The default configuration of Cyberoam UTM appliances uses the same Certification Authority certificate and same private ... |
| CVE-2012-3374 | — | — | 6.4% | Jul 7, 2012 | Buffer overflow in markup.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.5 allows remote attackers to ... |
| CVE-2012-2644 | — | — | 1.1% | Jul 7, 2012 | Cross-site scripting (XSS) vulnerability in the MT4i plugin 3.1 beta 4 and earlier for Movable Type allows remote attack... |
| CVE-2012-2643 | — | — | 1.1% | Jul 7, 2012 | Cross-site scripting (XSS) vulnerability in KENT-WEB YY-BOARD before 6.4 allows remote attackers to inject arbitrary web... |
| CVE-2012-2642 | — | — | 1.1% | Jul 7, 2012 | Cross-site scripting (XSS) vulnerability in the MT4i plugin 3.1 beta 4 and earlier for Movable Type allows remote attack... |
| CVE-2012-2386 | — | — | 42.5% | Jul 7, 2012 | Integer overflow in the phar_parse_tarfile function in tar.c in the phar extension in PHP before 5.3.14 and 5.4.x before... |
| CVE-2012-3585 | — | — | 7.7% | Jul 5, 2012 | Heap-based buffer overflow in jpeg_ls.dll in the Jpeg_LS (aka JLS) plugin in the formats plugins in IrfanView PlugIns be... |
| CVE-2012-2018 | — | — | 1.6% | Jul 5, 2012 | Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 8.x, 9.0x, and 9.1x allows remote attackers... |
| CVE-2012-2641 | — | — | 1.1% | Jul 5, 2012 | Cross-site scripting (XSS) vulnerability in Zenphoto before 1.4.3 allows remote attackers to inject arbitrary web script... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now