2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-2949The ZTE sync_agent program for Android 2.3.4 on the Score M device uses a hardcoded ztex1609523 password to control acce...
CVE-2012-2943CRLF injection vulnerability in cryptographp.inc.php in Cryptographp allows remote attackers to inject arbitrary HTTP he...
CVE-2012-2942Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsi...
CVE-2012-2941Cross-site scripting (XSS) vulnerability in search/ in Yandex.Server 2010 9.0 Enterprise allows remote attackers to inje...
CVE-2012-2940MediaChance Real-DRAW PRO 5.2.4 allows remote attackers to cause a denial of service (application crash) via a crafted (...
CVE-2012-2939Multiple unrestricted file upload vulnerabilities in Travelon Express 6.2.2 allow remote authenticated users to execute ...
CVE-2012-2938Multiple cross-site scripting (XSS) vulnerabilities in Travelon Express 6.2.2 allow remote attackers to inject arbitrary...
CVE-2012-2937Multiple SQL injection vulnerabilities in Pligg CMS before 1.2.2 allow remote attackers to execute arbitrary SQL command...
CVE-2012-2936Multiple cross-site scripting (XSS) vulnerabilities in Pligg CMS before 1.2.2 allow remote attackers to inject arbitrary...
CVE-2012-2436Multiple cross-site scripting (XSS) vulnerabilities in Pligg CMS before 1.2.2 allow remote attackers to inject arbitrary...
CVE-2012-2435Directory traversal vulnerability in the captcha module in Pligg CMS before 1.2.2 allows remote authenticated users to i...
CVE-2012-2935Cross-site scripting (XSS) vulnerability in osCommerce/OM/Core/Site/Shop/Application/Checkout/pages/main.php in OSCommer...
CVE-2012-2235Cross-site scripting (XSS) vulnerability in Support Incident Tracker (SiT!) 3.65 and earlier allows remote attackers to ...
CVE-2012-1792Cross-site scripting (XSS) vulnerability in osCommerce/OM/Core/Site/Setup/Application/Install/RPC/DBCheck.php in OSComme...
CVE-2012-1413Cross-site scripting (XSS) vulnerability in zc_install/includes/modules/pages/database_setup/header_php.php in Zen Cart ...
CVE-2012-2568d41d8cd98f00b204e9800998ecf8427e.php in the management web server on the Seagate BlackArmor device allows remote attacke...
CVE-2012-2176Multiple stack-based buffer overflows in a certain ActiveX control in qp2.cab in IBM Lotus Quickr 8.2 before 8.2.0.27-00...
CVE-2012-2429The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary...
CVE-2012-2428Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted pa...
CVE-2012-2427Heap-based buffer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via pa...
CVE-2012-2426The server in xArrow before 3.4.1 does not properly allocate memory, which allows remote attackers to cause a denial of ...
CVE-2012-1824Untrusted search path vulnerability in Measuresoft ScadaPro Client before 4.0.0 and ScadaPro Server before 4.0.0 allows ...
CVE-2012-2042Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption)...
CVE-2012-1821The Network Threat Protection module in the Manager component in Symantec Endpoint Protection (SEP) 11.0.600x through 11...
CVE-2012-1172The file-upload implementation in rfc1867.c in PHP before 5.4.0 does not properly handle invalid [ (open square bracket)...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now