2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2731 | — | — | 2.2% | Jun 27, 2012 | The Ubercart AJAX Cart 6.x-2.x before 6.x-2.1 for Drupal stores the PHP session id in the JavaScript settings array in p... |
| CVE-2012-2730 | — | — | 2.6% | Jun 27, 2012 | The Protected Node module 6.x-1.x before 6.x-1.6 for Drupal does not properly "protect node access when nodes are access... |
| CVE-2012-2729 | — | — | 1.0% | Jun 27, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in the SimpleMeta module 6.x-1.x before 6.x-2.0 for Drupal al... |
| CVE-2012-2728 | — | — | 1.2% | Jun 27, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Node Hierarchy module 6.x-1.x before 6.x-1.5 for Drupa... |
| CVE-2012-2727 | — | — | 2.3% | Jun 27, 2012 | Open redirect vulnerability in the Janrain Capture module 6.x-1.0 and 7.x-1.0 for Drupal, when synchronizing user data, ... |
| CVE-2012-2726 | — | — | 1.9% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the Protest module 6.x-1.x before 6.x-1.2 or 7.x-1.x before 7.x-1.2 for Drup... |
| CVE-2012-2725 | — | — | 1.7% | Jun 27, 2012 | classes/Filter/WhitelistedExternalFilter.php in the Authoring HTML module 6.x-1.x before 6.x-1.1 for Drupal does not pro... |
| CVE-2012-2723 | — | — | 2.1% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the Maestro module 7.x-1.x before 7.x-1.2 for Drupal allows remote authentic... |
| CVE-2012-2722 | — | — | 2.8% | Jun 27, 2012 | The node selection interface in the WYSIWYG editor (CKEditor) in the Node Embed module 6.x-1.x before 6.x-1.5 and 7.x-1.... |
| CVE-2012-2721 | — | — | 2.6% | Jun 27, 2012 | The default views in the Organic Groups (OG) module 6.x-2.x before 6.x-2.4 for Drupal do not properly check permissions ... |
| CVE-2012-2720 | — | — | 2.4% | Jun 27, 2012 | The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, wh... |
| CVE-2012-2719 | — | — | 1.5% | Jun 27, 2012 | The filedepot module 6.x-1.x before 6.x-1.3 for Drupal, when accessed using multiple different browsers from the same IP... |
| CVE-2012-2715 | — | — | 2.2% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the themes_links function in template.php in the Amadou theme module 6.x-1.x... |
| CVE-2012-2713 | — | — | 1.2% | Jun 27, 2012 | Cross-site request forgery (CSRF) vulnerability in the BrowserID (Mozilla Persona) module 7.x-1.x before 7.x-1.3 for Dru... |
| CVE-2012-2712 | — | — | 2.2% | Jun 27, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Search API module 7.x-1.x before 7.x-1.1 for Drupal, when sup... |
| CVE-2012-2711 | — | — | 1.7% | Jun 27, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Taxonomy List module 6.x-1.x before 6.x-1.4 for Drupal allow ... |
| CVE-2012-2710 | — | — | 1.8% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the Zen module 6.x-1.x before 6.x-1.1 for Drupal, when "Append the content t... |
| CVE-2012-2708 | — | — | 1.6% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the _hosting_task_log_table function in modules/hosting/task/hosting_task.mo... |
| CVE-2012-2707 | — | — | 2.4% | Jun 27, 2012 | The Hostmaster (Aegir) module 6.x-1.x before 6.x-1.9 for Drupal does not properly exit when users do not have access to ... |
| CVE-2012-2706 | — | — | 1.8% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the Post Affiliate Pro (PAP) module for Drupal allows remote attackers to in... |
| CVE-2012-2705 | — | — | 1.6% | Jun 27, 2012 | The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a ... |
| CVE-2012-2703 | — | — | 1.9% | Jun 27, 2012 | Cross-site scripting (XSS) vulnerability in the Advertisement module 6.x-2.x before 6.x-2.3 for Drupal, when debug mode ... |
| CVE-2012-2702 | — | — | 2.6% | Jun 27, 2012 | The Ubercart Product Keys module 6.x-1.x before 6.x-1.1 for Drupal does not properly check access for product keys, whic... |
| CVE-2012-2701 | — | — | — | Jun 27, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-2341. Reason: This candidate is a duplicate of... |
| CVE-2012-2700 | — | — | — | Jun 27, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-2340. Reason: This candidate is a duplicate of... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now