2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-2904player.swf in LongTail JW Player 5.9 allows remote attackers to conduct cross-site scripting (XSS) attacks to inject arb...
CVE-2012-2903Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 7.0 and earlier allow remote attackers to inject...
CVE-2012-2902Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the Joomla Content Editor (JCE) componen...
CVE-2012-2901Cross-site scripting (XSS) vulnerability in the Profile List in the Joomla Content Editor (JCE) component before 2.1 for...
CVE-2012-2376Buffer overflow in the com_print_typeinfo function in PHP 5.4.3 and earlier on Windows allows remote attackers to execut...
CVE-2012-2341Cross-site request forgery (CSRF) vulnerability in the Take Control module 6.x-2.x before 6.x-2.2 for Drupal allows remo...
CVE-2012-2322Integer overflow in the dhcpv6_get_option function in gdhcp/client.c in ConnMan before 0.85 allows remote attackers to c...
CVE-2012-2321The loopback plug-in in ConnMan before 0.85 allows remote attackers to execute arbitrary commands via shell metacharacte...
CVE-2012-2320ConnMan before 0.85 does not ensure that netlink messages originate from the kernel, which allows remote attackers to by...
CVE-2012-2120latex2man in texlive-extra-utils 2011.20120322, and possibly other versions or packages, when used with the H or T optio...
CVE-2012-2118Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a...
CVE-2012-2093src/common/latex.py in Gajim 0.15 allows local users to overwrite arbitrary files via a symlink attack on a temporary la...
CVE-2012-2010The ACMELOGIN implementation in HP OpenVMS 8.3 and 8.4 on the Alpha platform, and 8.3, 8.3-1H1, and 8.4 on the Itanium p...
CVE-2012-1589Open redirect vulnerability in the Form API in Drupal 7.x before 7.13 allows remote attackers to redirect users to arbit...
CVE-2012-2411Buffer overflow in RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, allows remote attacker...
CVE-2012-2406RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, does not properly parse ASMRuleBook data ...
CVE-2012-2337sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netma...
CVE-2012-2319Multiple buffer overflows in the hfsplus filesystem implementation in the Linux kernel before 3.3.5 allow local users to...
CVE-2012-2123The cap_bprm_set_creds function in security/commoncap.c in the Linux kernel before 3.3.3 does not properly handle the us...
CVE-2012-2121The KVM implementation in the Linux kernel before 3.3.4 does not properly manage the relationships between memory slots ...
CVE-2012-1601The KVM implementation in the Linux kernel before 3.3.6 allows host OS users to cause a denial of service (NULL pointer ...
CVE-2012-1179The Linux kernel before 3.3.1, when KVM is used, allows guest OS users to cause a denial of service (host OS crash) by l...
CVE-2012-0671Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr...
CVE-2012-0670Integer overflow in Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of ...
CVE-2012-0669Buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now